[Secure-testing-commits] r46087 - data/CVE

Balint Reczey rbalint at moszumanska.debian.org
Wed Nov 9 17:12:06 UTC 2016


Author: rbalint
Date: 2016-11-09 17:12:06 +0000 (Wed, 09 Nov 2016)
New Revision: 46087

Modified:
   data/CVE/list
Log:
update info on kdesu CVE-2016-7787

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-09 16:55:14 UTC (rev 46086)
+++ data/CVE/list	2016-11-09 17:12:06 UTC (rev 46087)
@@ -4623,6 +4623,8 @@
 	NOTE: https://www.kde.org/info/security/advisory-20160930-1.txt
 	NOTE: https://github.com/KDE/kde-cli-tools/commit/5eda179a099ba68a20dc21dc0da63e85a565a171
 	NOTE: For kde-cli-tools fixed in 5.7.5 upstream
+	NOTE: kde-runtime's affected binary is /usr/lib/kde4/libexec/kdesu-distrib/kdesu
+	NOTE: kdesudo's affected binary is /usr/bin/kdesudo
 	TODO: need investigation for kde-runtime, the kdesu.cpp is present, compiled, but not clear if just affected but (unimportant).
 CVE-2016-7786
 	RESERVED




More information about the Secure-testing-commits mailing list