[Secure-testing-commits] r39938 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Feb 26 07:49:01 UTC 2016


Author: carnil
Date: 2016-02-26 07:49:00 +0000 (Fri, 26 Feb 2016)
New Revision: 39938

Modified:
   data/CVE/list
Log:
Add CVE-2016-2568/policykit-1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-26 07:46:57 UTC (rev 39937)
+++ data/CVE/list	2016-02-26 07:49:00 UTC (rev 39938)
@@ -1,6 +1,10 @@
 CVE-2016-XXXX [out-of-bounds reads]
 	- cpio <unfixed> (bug #815965)
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/02/25/8
+CVE-2016-2568 [Program run via pkexec as unprivileged user can escape to parent session via TIOCSTI ioctl]
+	- policykit-1 <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1300746
+	TODO: check
 CVE-2016-2558
 	RESERVED
 CVE-2016-2557




More information about the Secure-testing-commits mailing list