OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [suse-security] CVS Heap Overflow Vulnerability

listnolog.org
Date: Fri May 28 2004 - 03:37:09 CDT


Hi Emiliano,

Emiliano Sutil wrote:
> I have received this alert
> US-CERT Technical Cyber Security Alert TA04-147A -- CVS Heap Overflow
> Vulnerability

yes, see http://www.uscert.gov/cas/techalerts/TA04-147A.html - take a
look at the description:

,-------
| US-CERT is tracking this issue as VU#192038. This reference number
| corresponds to CVE candidate CAN-2004-0396.
`-------

Searching for cvs in my mailbox:

,-------
| Subject: [suse-security] SUSE Security Announcement: cvs
| (SuSE-SA:2004:013)
| Date: Wed, 19 May 2004 13:16:00 +0200 (CEST)
| From: krahmersuse.de (Sebastian Krahmer)
| To: suse-securitysuse.com
---8<---
| Cross References: CAN-2004-0396
`-------

Same CAN reference. IMHO the US-CERT is too slow...

GTi

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here