[csw-maintainers] Fwd: [findutils 0004769]: Current stable release is vulnerable to CVE-2007-2452

Ben Walton bwalton at opencsw.org
Sun May 15 20:24:51 CEST 2011


Does anyone have stable installs kicking around still?  Want to roll
an updated findutils for it?

Thanks
-Ben

--- Begin forwarded message from Mantis Bug Tracker ---
From: Mantis Bug Tracker <noreply at opencsw.org>
Date: Sun, 15 May 2011 12:10:16 -0400
Subject: [findutils 0004769]: Current stable release is vulnerable to CVE-2007-2452


The following issue has been REOPENED. 
====================================================================== 
https://www.opencsw.org/mantis/view.php?id=4769 
====================================================================== 
Reported By:                jay
Assigned To:                bwalton
====================================================================== 
Project:                    findutils
Issue ID:                   4769
Category:                   upgrade
Reproducibility:            always
Severity:                   major
Priority:                   normal
Status:                     feedback
====================================================================== 
Date Submitted:             2011-05-14 14:50 CEST
Last Modified:              2011-05-15 18:10 CEST
====================================================================== 
Summary:                    Current stable release is vulnerable to
CVE-2007-2452
Description: 
GNU Findutils release 4.2.31 fixes CVE-2007-2452 but stable is 4.2.30, and
so it's vulnerable.
====================================================================== 

--- End forwarded message ---
--
Ben Walton
Systems Programmer - CHASS
University of Toronto
C:416.407.5610 | W:416.978.4302



More information about the maintainers mailing list