[Secure-testing-commits] r32044 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Feb 7 06:14:05 UTC 2015


Author: carnil
Date: 2015-02-07 06:14:05 +0000 (Sat, 07 Feb 2015)
New Revision: 32044

Modified:
   data/CVE/list
Log:
Add libmnl issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-07 06:12:51 UTC (rev 32043)
+++ data/CVE/list	2015-02-07 06:14:05 UTC (rev 32044)
@@ -26,6 +26,11 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=955808
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/06/12
 	TODO: check
+CVE-2012-XXXX [ncorrect validation of netlink message origin allows attackers to spoof netlink messages]
+	- libmnl <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=848949
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/06/13
+	TODO: check
 CVE-2012-XXXX [Out-of heap-based buffer write in GIF encoder]
 	- byzanz <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=852481




More information about the Secure-testing-commits mailing list