Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Fri, 27 Dec 2013 07:07:31 -0500 (EST)
From: cve-assign@...re.org
To: huzaifas@...hat.com
Cc: cve-assign@...re.org, oss-security@...ts.openwall.com
Subject: Re: Two CVE request for gnome-shell/screensaver issues

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> 1. gnome-shell: blind command execution via activities search keyboard focus
> https://bugzilla.gnome.org/show_bug.cgi?id=686740
> Reference: https://bugzilla.redhat.com/show_bug.cgi?id=1030431
> https://git.gnome.org/browse/gnome-shell/commit/js/ui/screenShield.js?id=209014b083dbe86ed0e0860a6016735571b56f94

Use CVE-2013-7220.


> 2. gnome-shell: run command dialog visible above screen locker
> https://bugzilla.gnome.org/show_bug.cgi?id=708313
> https://git.gnome.org/browse/gnome-shell/commit/js/ui/main.js?id=efdf1ff755943fba1f8a9aaeff77daa3ed338088
> Reference: https://bugzilla.redhat.com/show_bug.cgi?id=1046839

Use CVE-2013-7221.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEbBAEBAgAGBQJSvWy7AAoJEKllVAevmvmsBKIH9i5j8T+1kItAC6Lxy5kSfHca
pDllGu1EsCuFXVkSHSVExTo1lLebBLtU4ZvHB9lJ7pSIp2WgSEmQ5jGTuNYSg4Er
EAcbBHqJOy56iRKW7nVbVszn4aWmMSWOotUtJFjFsjYkY0lpKec4/UwLmb1y7Lsl
mGQ0Vwjrtd3BxxhADcjPfcVynl4mxAp8sOcZlCt4OZid71ZSN3S6YfX/FeG7cNJ6
axwTmWjOQYjOTqPcBkdbaUaYoDk5F4yZoev3IKiOxcq/4GGduqfMDgUnksLaELqM
rPjCNErsnEAKxyS1KbISa9wqbV3os0ENIzqfJcGqxRk7wZDaiIo5ZnqjEQkrRg==
=BWdH
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.