[Bug 194511] CVE-2006-2894 arbitrary file read vulnerability

bugzilla at redhat.com bugzilla at redhat.com
Fri Nov 2 17:31:53 UTC 2007


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: CVE-2006-2894 arbitrary file read vulnerability
Alias: CVE-2006-2894

https://bugzilla.redhat.com/show_bug.cgi?id=194511


lkundrak at redhat.com changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |lkundrak at redhat.com
              Alias|                            |CVE-2006-2894
             Status|CLOSED                      |ASSIGNED
         Resolution|INSUFFICIENT_DATA           |
            Version|fc5                         |devel




------- Additional Comments From lkundrak at redhat.com  2007-11-02 13:31 EST -------
Matej: Please never close bugs with "Security" keyword unless you are condfident
they are fixed.

The sample exploit from https://bugzilla.mozilla.org/show_bug.cgi?id=258875
works with seamonkey-1.1.3-8.fc8, though the upstream bug was recently closed.

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list