Openwall Project   /home  Owl  JtR  Pro  crypt  pam_passwdqc  tcb  phpass  scanlogd  popa3d  msulogin  /  Linux  BIND  /  advisories  presentations  /  services  donations  /  wordlists  passwords  /  news  community  lists  wiki  CVSweb  mirrors  signatures
bringing security into open environments
 
Password Recovery Resources on the Net
[<prev] [next>] [thread-next>] [month] [year] [list]
Date: Sat, 4 Oct 2008 18:30:37 +1000
From: Steffen Joeris <steffen.joeris@...lelinux.de>
To: oss-security@...ts.openwall.com
Cc: coley@...re.org
Subject: duplicates: CVE-2008-4406 and CVE-2008-4407 [sabre insecure temp file]

Hi

The CVE ids issued for sabre regarding the insecure use of the tmp file are 
the same. The issue was introduced by a debian patch, but other vendors might 
have possibly patched it the same way. I suggest to mark one of them as a 
duplicate though, because it might be confusing.

Cheers
Steffen

[ CONTENT OF TYPE application/pgp-signature SKIPPED ]

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Hosted by DataForce ISP - Powered by Openwall GNU/*/Linux