oss-sec mailing list archives

Re: Suid mount helpers fail to anticipate RLIMIT_FSIZE


From: Tomas Hoger <thoger () redhat com>
Date: Wed, 27 Apr 2011 20:26:53 +0200

On Wed, 27 Apr 2011 14:19:43 -0400 Dan Rosenberg wrote:

Steve, it seems CVE-2011-1676 should get marked as rejected or
disputed.

I currently only have CVE-2011-1089, which seems to be for glibc not
indicating failure of addmntent() calls.  Were additional CVEs
assigned to some of the individual issues?  If so, would you mind
posting them here to avoid duplicate requests?

CVE-2011-1675 - CVE-2011-1681 based on your list here:
http://thread.gmane.org/gmane.comp.security.oss.general/4374/focus=4516

CVE-2011-1089 for similar nfs-utils:
http://thread.gmane.org/gmane.comp.security.oss.general/4954

-- 
Tomas Hoger / Red Hat Security Response Team


Current thread: