[Secure-testing-commits] r34746 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jun 6 06:44:49 UTC 2015


Author: carnil
Date: 2015-06-06 06:44:49 +0000 (Sat, 06 Jun 2015)
New Revision: 34746

Modified:
   data/CVE/list
Log:
Add CVE-2015-3218/policykit-1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-06 06:40:00 UTC (rev 34745)
+++ data/CVE/list	2015-06-06 06:44:49 UTC (rev 34746)
@@ -2567,8 +2567,12 @@
 	RESERVED
 CVE-2015-3219
 	RESERVED
-CVE-2015-3218
+CVE-2015-3218 [crash authentication_agent_new with invalid object path in RegisterAuthenticationAgent]
 	RESERVED
+	- policykit-1 <unfixed>
+	NOTE: http://lists.freedesktop.org/archives/polkit-devel/2015-May/000420.html
+	NOTE: Suggested fix: http://lists.freedesktop.org/archives/polkit-devel/2015-May/000421.html
+	TODO: check
 CVE-2015-3217 [PCRE Library Call Stack Overflow Vulnerability in match()]
 	RESERVED
 	- pcre3 <unfixed> (bug #787641)




More information about the Secure-testing-commits mailing list