[Secure-testing-commits] r39298 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jan 29 16:32:14 UTC 2016


Author: carnil
Date: 2016-01-29 16:32:14 +0000 (Fri, 29 Jan 2016)
New Revision: 39298

Modified:
   data/CVE/list
Log:
Add CVE-2015-8631/krb5

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-29 16:30:31 UTC (rev 39297)
+++ data/CVE/list	2016-01-29 16:32:14 UTC (rev 39298)
@@ -2916,8 +2916,11 @@
 	RESERVED
 CVE-2015-8632
 	RESERVED
-CVE-2015-8631
+CVE-2015-8631 [Memory leak caused by supplying a null principal name in request]
 	RESERVED
+	- krb5 <unfixed>
+	NOTE: https://github.com/krb5/krb5/commit/83ed75feba32e46f736fcce0d96a0445f29b96c2
+	TODO: check
 CVE-2015-8630 [krb5 doesn't check for null policy when KADM5_POLICY is set in the mask]
 	RESERVED
 	- krb5 <unfixed>




More information about the Secure-testing-commits mailing list