oss-sec mailing list archives

Re: CVE request for VDSM denial of service


From: Sven Kieske <s.kieske () mittwald de>
Date: Wed, 8 Oct 2014 11:34:04 +0200



On 08/10/14 09:34, Wade Mealing wrote:
Gday,

The issue (outlined here https://bugzilla.redhat.com/show_bug.cgi?id=1148688 ) allows
an attacker to hold open an ssl connection effectively denying new connections the
ability to complete any new ssl connections.

I would like a CVE number to assign to this issue.  Please assign me one.

Doesn't RH assign it's own CVEs anymore?

I also wonder why this bug wasn't reported to upstream
(wrong BZ "Product" at least it should get cloned to ovirt).

-- 
Mit freundlichen Grüßen / Regards

Sven Kieske

Systemadministrator
Mittwald CM Service GmbH & Co. KG
Königsberger Straße 6
32339 Espelkamp
T: +49-5772-293-100
F: +49-5772-293-333
https://www.mittwald.de
Geschäftsführer: Robert Meyer
St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen
Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen


Current thread: