Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Wed, 5 Aug 2009 22:01:10 +0200
From: Tomas Hoger <thoger@...hat.com>
To: coley@...us.mitre.org
Cc: oss-security@...ts.openwall.com, Matthias Andree
 <matthias.andree@....de>
Subject: Re: CVE request: fetchmail <= 6.3.10 SSL certificate
 NUL prefix verification bypass

On Wed, 5 Aug 2009 14:13:04 -0400 (EDT) "Steven M. Christey"
<coley@...us.mitre.org> wrote:

> So use CVE-2009-2666 for fetchmail (I'll fill it in later) and Tomas,
> even if it results in dozens of CVEs, I suspect this is how we should
> go.

Fair enough, thank you!

-- 
Tomas Hoger / Red Hat Security Response Team

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ