oss-sec mailing list archives

CVE request: zarafa-autorespond suffers from a potential local privilege escalation


From: Martin Prpic <mprpic () redhat com>
Date: Mon, 21 Sep 2015 14:58:35 +0200

Hi,

The following bug was reported to Red Hat:

https://bugzilla.redhat.com/show_bug.cgi?id=1263006

The issue is noted as "zarafa-autorespond suffers from a potential local
privilege escalation" in the zarafa changelog:

https://download.zarafa.com/community/beta/7.2/changelog-7.2.txt

Patch:

https://bugzilla.redhat.com/attachment.cgi?id=1073440&action=diff

Can a CVE be assigned for this issue?

Thanks!

-- 
Martin Prpič / Red Hat Product Security


Current thread: