[Secure-testing-commits] r43126 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 11 19:22:16 UTC 2016


Author: carnil
Date: 2016-07-11 19:22:16 +0000 (Mon, 11 Jul 2016)
New Revision: 43126

Modified:
   data/CVE/list
Log:
Add issue in leptonlib

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-07-11 19:04:28 UTC (rev 43125)
+++ data/CVE/list	2016-07-11 19:22:16 UTC (rev 43126)
@@ -1,3 +1,7 @@
+CVE-2016-XXXX [Insecure use of /tmp]
+	- leptonlib <unfixed> (bug #830660)
+	[jessie] - leptonlib <no-dsa> (Minor issue)
+	NOTE: Not exploitable with kernel hardening since jessie
 CVE-2016-6191 [Persistent Cross-Site Scripting in calendar]
 	- sogo <unfixed>
 	NOTE: https://sogo.nu/bugs/view.php?id=3718




More information about the Secure-testing-commits mailing list