~wgrant/ubuntu-cve-tracker/mainold

« back to all changes in this revision

Viewing changes to retired/CVE-2008-1658

  • Committer: William Grant
  • Date: 2008-04-19 08:08:17 UTC
  • mfrom: (1065.2.58 ubuntu-cve)
  • Revision ID: william@qeuni.net-20080419080817-274tzbq5c88enccc
MergeĀ fromĀ master.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
Candidate: CVE-2008-1658
 
2
References:
 
3
 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1658
 
4
Description:
 
5
 Format string vulnerability in the grant helper (polkit-grant-helper.c) in
 
6
 PolicyKit 0.7 and earlier allows attackers to cause a denial of service
 
7
 (crash) and possibly execute arbitrary code via format strings in a
 
8
 password.
 
9
Ubuntu-Description:
 
10
Notes:
 
11
Bugs:
 
12
Priority: medium
 
13
Discovered-by:
 
14
Assigned-to: keescook
 
15
 
 
16
Patches_policykit:
 
17
 upstream: http://gitweb.freedesktop.org/?p=PolicyKit.git;a=commitdiff;h=5bc86a14cc0e356bcf8b5f861674f842869b1be7
 
18
upstream_policykit: pending (0.8)
 
19
dapper_policykit: DNE
 
20
edgy_policykit: DNE
 
21
feisty_policykit: DNE
 
22
gutsy_policykit: DNE
 
23
devel_policykit: released (0.7-2ubuntu6)