Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-Id: <201401222314.s0MNEo1v002954@linus.mitre.org>
Date: Wed, 22 Jan 2014 18:14:50 -0500 (EST)
From: cve-assign@...re.org
To: helmut@...divi.de
Cc: cve-assign@...re.org, oss-security@...ts.openwall.com
Subject: Re: Getting tempfile/mktemp wrong

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> TEMPFILE=`tempfile`.suffix
> 
> 1) localepurge
> http://bugs.debian.org/736359

Use CVE-2014-1638.


> 2) syncevolution
> http://bugs.debian.org/736357

Use CVE-2014-1639.


> 3) axiom (packaging)
> http://bugs.debian.org/736358

Use CVE-2014-1640.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJS4E8BAAoJEKllVAevmvmsaVcH/iJFgeuCWqpbrXvXEPHeZ1V7
FgTmtfXxC7zxGyqRcw0Tb1HuuWM/eZo8HdhXX8+Q7Qis64HUPNdi2Rb9hRgwUON8
1LflImtrCXCnsOsJcW4UKs87Fq4XTMUlIhJOYf25m0PrgqBRoIO8zAMaVj64ruvf
0vrmuTziCNi4vvWgquVQrhHx5aCmSOld3/g1w/+GVuZl/DOkHalwJuJueeGO1/ID
sdESteKmET9TjohS/QZH/2cP09MairxwF/vZqrJUNrwiFXSGMOYO8EWBUQSjd4Ro
n4zBErFwWoN/no0vXo/wbkXpYKWGoiRc/EoAjz4lkAlDoiAieiskWK5n4Kj1Ap8=
=kmhi
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.