Comment 3 for bug 690323

Revision history for this message
In , Krahmer (krahmer) wrote :

Via oss-sec:

Date: Mon, 24 Jan 2011 13:57:11 -0800
From: Kees Cook
To: oss-security

Hello,

I'd like to get CVEs assigned for two issues in Gypsy[1]:

reads arbitrary files as root user on behalf of regular user
https://bugs.freedesktop.org/show_bug.cgi?id=33431

buffer overflow in nmea device input handling
https://bugs.freedesktop.org/show_bug.cgi?id=33431

Thanks,

-Kees

[1] http://gypsy.freedesktop.org/wiki/