Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <20140801101259.GA18750@suse.de>
Date: Fri, 1 Aug 2014 12:12:59 +0200
From: Marcus Meissner <meissner@...e.de>
To: OSS Security List <oss-security@...ts.openwall.com>
Cc: ben@...er.org
Subject: Possible CVE request: subversion MD5 collision authentication leak

Hi,

The subversion list has fixed a md5 collision attack possibility.

http://mail-archives.apache.org/mod_mbox/subversion-dev/201407.mbox/%3C53DAB4A7.8030004%40reser.org%3E

http://svn.apache.org/r1550691
http://svn.apache.org/r1550772

The referenced E-Mail speaks about CVE request, so not sure who will assign
one.

Ciao, Marcus

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.