Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Mon, 29 Dec 2014 03:59:28 +0300
From: Alexander Cherepanov <cherepan@...me.ru>
To: oss-security@...ts.openwall.com
CC: cve-assign@...re.org
Subject: CVE request: dir traversal in elfutils

Hi!

A dir traversal vuln is fixed in elfutils:

Initial (terse) report:
https://lists.fedorahosted.org/pipermail/elfutils-devel/2014-December/004499.html

Fix (with analysis in commit message):
https://git.fedorahosted.org/cgit/elfutils.git/commit/?id=147018e729e7c22eeabf15b82d26e4bf68a0d18e

At least versions 0.152 and 0.161 are affected.

Could CVE please be assigned?

-- 
Alexander Cherepanov

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.