[Secure-testing-commits] r39298 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Fri Jan 29 16:32:14 UTC 2016
Author: carnil
Date: 2016-01-29 16:32:14 +0000 (Fri, 29 Jan 2016)
New Revision: 39298
Modified:
data/CVE/list
Log:
Add CVE-2015-8631/krb5
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-01-29 16:30:31 UTC (rev 39297)
+++ data/CVE/list 2016-01-29 16:32:14 UTC (rev 39298)
@@ -2916,8 +2916,11 @@
RESERVED
CVE-2015-8632
RESERVED
-CVE-2015-8631
+CVE-2015-8631 [Memory leak caused by supplying a null principal name in request]
RESERVED
+ - krb5 <unfixed>
+ NOTE: https://github.com/krb5/krb5/commit/83ed75feba32e46f736fcce0d96a0445f29b96c2
+ TODO: check
CVE-2015-8630 [krb5 doesn't check for null policy when KADM5_POLICY is set in the mask]
RESERVED
- krb5 <unfixed>
More information about the Secure-testing-commits
mailing list