oss-sec mailing list archives

Re: Old cscope buffer overflow


From: "Steven M. Christey" <coley () linus mitre org>
Date: Wed, 6 May 2009 12:53:51 -0400 (EDT)


On Wed, 6 May 2009, Tomas Hoger wrote:

We recently updated CVE-2009-0148 for overflows in cscope before
15.7a. Is this the same issue, or do we need a different one?

This seems to be distinct from CVE-2006-4262 as well...

Different from both.  CVE-2009-0148 is more of a dupe / re-occurrence /
incomplete fix of even older CVE-2004-2541.

OK.  Use CVE-2009-1577, to be filled in later.

- Steve


Current thread: