|
Message-Id: <201402051239.s15CdI6Y021951@linus.mitre.org> Date: Wed, 5 Feb 2014 07:39:18 -0500 (EST) From: cve-assign@...re.org To: mmcallis@...hat.com Cc: cve-assign@...re.org, oss-security@...ts.openwall.com, 737385@...s.debian.org Subject: Re: CVE request: a2ps insecure temporary file use -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 >> https://bugzilla.redhat.com/show_bug.cgi?id=1060630#c5 >> * Mon Feb 12 2001 Tim Waugh <twaugh@...hat.com> >> - Fix tmpfile security patch so that it actually _works_ (bug #27155). >> And notes >> http://pkgs.fedoraproject.org/cgit/a2ps.git/plain/a2ps-4.13-security.patch >> is the patch. > I spent a little time looking but could not determine if a release was > made to fix only part of the problem. So one ID is fine by us. Use CVE-2001-1593. - -- CVE assignment team, MITRE CVE Numbering Authority M/S M300 202 Burlington Road, Bedford, MA 01730 USA [ PGP key available through http://cve.mitre.org/cve/request_id.html ] -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.14 (SunOS) iQEcBAEBAgAGBQJS8jCQAAoJEKllVAevmvmsYOsH/ip2JAUT4e/oQ9/TjFuOtR7E QbmXDrv18am2/MCQ8phfXIelF8CAByXdvbdj1KNwyTSxqTcs+6HZDNNsTt66wIsI H6Yajsc3HPdAITKOvL6oiS1kl0d/Ndbk36+KBrCmwCqp09tHKIU3UoN5jiZXMQIr A3RaQ6/MdWyd9QQ9MsgwclLwvkzBzlbgc76N/TCaIv/hEf+gKkeOF6S+el1pJdQ4 XTZ9FDlaRv6kRUO+fePLCU0CANmZj5vJNDA1JicElUly/lFTpTxB8ZB/1JAyeEC9 eD8KQ7RjUrUiwXKDTbm33ekGLPY6wpNfSEtM9e7N26omhnCeENwxMU2ePoVA7ws= =LDwH -----END PGP SIGNATURE-----
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.