Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri, 31 Aug 2012 13:00:01 -0400 (EDT)
From: "Steven M. Christey" <coley@...-smtp.mitre.org>
To: oss-security@...ts.openwall.com
cc: Moritz Muehlenhoff <jmm@...ian.org>
Subject: Re: Three CVE requests: at-spi2-atk, as31, naxsi


On Fri, 6 Jul 2012, Kurt Seifried wrote:

>> 2. Insecure tempfile handling in the as31 assembler
>> http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=655496 Homepage:
>> http://wiki.erazor-zone.de/doku.php?id=wiki:projects:linux:as31
>
> Please use CVE-2012-3379 for this issue.


This is a duplicate of CVE-2012-0808, assigned back in January (and also 
requested by Moritz ;-)  CVE-2012-0808 has 20,000+ Google hits, has an 
established description, was assigned earlier, and has the same level of 
authoritative vendor references (i.e. bug reports).  So, we will keep it.

So, REJECT CVE-2012-3379 as a duplicate of CVE-2012-0808.

- Steve

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.