oss-sec mailing list archives

Re: CVE Request -- Asterisk Security Vulnerability


From: "Matthew Nicholson" <mnicholson () digium com>
Date: Fri, 22 Apr 2011 11:29:45 +0000

It is for AST-2011-006
-- 
Matthew Nicholson
Digium, Inc. | Software Developer

-----Original Message-----
From: Jan Lieskovsky <jlieskov () redhat com>
Date: Fri, 22 Apr 2011 11:46:27 
To: Matthew Nicholson<mnicholson () digium com>; Steven M. Christey<coley () linus mitre org>
Reply-To: oss-security <oss-security () lists openwall com>
Cc: oss-security<oss-security () lists openwall com>
Subject: Re: [oss-security] CVE Request -- Asterisk Security Vulnerability


Hello Matthew,

   thank you for the heads up.

Matthew Nicholson wrote:
Hi,

I need a CVE for a new Asterisk security vulnerability.

Was this request intended to be for the following one:
[1] http://downloads.asterisk.org/pub/security/AST-2011-006.html ?

Note: Because http://downloads.asterisk.org/pub/security/AST-2011-005.html
       already got an id of CVE-2011-1507.

If the request was meant for [1] is it still valid? (i.e. still a CVE id needs
to be assigned to this?)

Or was it requested for yet something completely different from above two?

Thank you, Regards, Jan.
--
Jan iankko Lieskovsky / Red Hat Security Response Team

Current thread: