[<prev] [next>] [<thread-prev] [month] [year] [list]
Date: Wed, 24 Sep 2008 14:03:26 -0400 (EDT)
From: "Steven M. Christey" <coley@...us.mitre.org>
To: oss-security@...ts.openwall.com
Subject: Re: CVE id request: fraud2
On Wed, 24 Sep 2008, Robert Buchholz wrote:
> CVE-2008-4201 states "in FAAD2 before 2.6.1", whereas the patch is based
> on 2.6.1 -- i.e. 2.6.1 is affected. So the CVE needs to be corrected.
I inferred 2.6.1 incorrectly because that was the latest version available
for download. THanks for the correction.
- Steve
Please check out the
Open Source Software Security Wiki, which is counterpart to this
mailing list.
Hosted by DataForce ISP -
Powered by Openwall GNU/*/Linux