[Secure-testing-commits] r39588 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Feb 10 18:08:51 UTC 2016


Author: carnil
Date: 2016-02-10 18:08:51 +0000 (Wed, 10 Feb 2016)
New Revision: 39588

Modified:
   data/CVE/list
Log:
Add CVE-2016-2312/plasma-workspace

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-10 17:59:26 UTC (rev 39587)
+++ data/CVE/list	2016-02-10 18:08:51 UTC (rev 39588)
@@ -5,6 +5,13 @@
 	NOTE: Upstream fix: http://svn.cacti.net/viewvc?view=rev&revision=7770
 	NOTE: https://bugzilla.suse.com/show_bug.cgi?id=965930
 	NOTE: http://www.openwall.com/lists/oss-security/2016/02/09/3
+CVE-2016-2312 [KDE lockscreen bypass by switching display off and on]
+	- plasma-workspace <unfixed>
+	NOTE: Affects plasma-workspace < 5.5.0, kscreenlocker < 5.5.5
+	NOTE: kscreenlocker is only in experimental
+	NOTE: https://www.kde.org/info/security/advisory-20160209-1.txt
+	NOTE: https://bugs.kde.org/show_bug.cgi?id=358125
+	NOTE: https://bugzilla.opensuse.org/show_bug.cgi?id=964548
 CVE-2016-XXXX [Stack corruption from crafted pattern]
 	- pcre3 <unfixed>
 	[wheezy] - pcre3 <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list