oss-sec mailing list archives

Re: CVE request for select() buffer overrun in CHICKEN Scheme on the Android platform


From: cve-assign () mitre org
Date: Thu, 11 Sep 2014 03:36:28 -0400 (EDT)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

http://lists.nongnu.org/archive/html/chicken-users/2014-08/msg00055.html
http://lists.nongnu.org/archive/html/chicken-hackers/2014-08/msg00017.html
http://code.call-cc.org/cgi-bin/gitweb.cgi?p=chicken-core.git;a=commit;h=bbf5c1d5839970c17b37406155180853c325c710

Use CVE-2014-6310.


A patch which changes the default to be POSIX poll() so that platforms
added in the future will be more likely not to be affected by this issue

This type of additional development work (anticipatory hardening) is
not eligible for a CVE ID.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJUEVCaAAoJEKllVAevmvmsO1IH/jt+OKCgiJpYGYEdfQVjp+oP
clXybzQEuz4GzcB0FM5pdMBp5boVDSh6CfvXiZh3ojAxbF1/akODxPjoUOZktKzk
B0DsXHQfJQtliDyO478Kbmsf6fMirqZHZ6hcWy8PiceY8iC4zZo1/oSkddktFx5c
CnR3u0VwG1xmRj4CZHlDQLwtQLCwjpuBhZxdm2le2UnJNsHncBUX6jDjaUfsvdWB
mukXscmSqLqTerZhb0f/TY/TSlkUQT+yXJqZwmNt6Q1/mAAxRgCC0N8omfgCbX8Z
0AcPR21LgEzPINDkgPOKNRoqpoIUqgalLOn+xKN66UyqdBk9PDS9Ctmm8bvDww0=
=XVQj
-----END PGP SIGNATURE-----


Current thread: