[Secure-testing-team] Bug#776502: grml-debootstrap: CVE-2015-1378: Issues with sourcing cmdlineopts.clp from current working directory

Salvatore Bonaccorso carnil at debian.org
Wed Jan 28 18:30:04 UTC 2015


Source: grml-debootstrap
Version: 0.54
Severity: important
Tags: security upstream
Control: forwarded -1 https://github.com/grml/grml-debootstrap/issues/59

Hi,

the following vulnerability was published for grml-debootstrap, but as
far I can see upstream has not commited a solution so far.

CVE-2015-1378[0]:
Issues with sourcing cmdlineopts.clp from current working directory

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2015-1378
[1] https://github.com/grml/grml-debootstrap/issues/59

Regards,
Salvatore



More information about the Secure-testing-team mailing list