oss-sec mailing list archives

Re: CVE request: multiple gypsy vulnerabilities


From: Josh Bressers <bressers () redhat com>
Date: Tue, 25 Jan 2011 11:49:41 -0500 (EST)

I'm giving these 2011 IDs. None of the information was public in 2010.

----- Original Message -----
Hello,

I'd like to get CVEs assigned for two issues in Gypsy[1]:

reads arbitrary files as root user on behalf of regular user
https://bugs.freedesktop.org/show_bug.cgi?id=33431

Use CVE-2011-0523.


buffer overflow in nmea device input handling
https://bugs.freedesktop.org/show_bug.cgi?id=33431


Use CVE-2011-0524.

Thanks.

-- 
    JB


Current thread: