[Secure-testing-commits] r37956 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 27 21:17:49 UTC 2015


Author: carnil
Date: 2015-11-27 21:17:49 +0000 (Fri, 27 Nov 2015)
New Revision: 37956

Modified:
   data/CVE/list
Log:
Clarify scope of assigned CVE-2015-8374

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-11-27 21:16:15 UTC (rev 37955)
+++ data/CVE/list	2015-11-27 21:17:49 UTC (rev 37956)
@@ -64,6 +64,9 @@
 	- linux-2.6 <removed>
 	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=0305cd5f7fca85dae392b9ba85b116896eb7c1c7 (v4.4-rc1)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/11/27/2
+	NOTE: CVE assignment for the vulnerability with the impact of "User B now
+	NOTE: gets to see the 1000 bytes that user A truncated from its file before
+	NOTE: it made its file world readable"
 	TODO: check
 CVE-2015-8337
 	RESERVED




More information about the Secure-testing-commits mailing list