Home page logo

oss-sec logo oss-sec mailing list archives

CVE Request -- kde-workspace 4.10.5 fixing two security flaws
From: Jan Lieskovsky <jlieskov () redhat com>
Date: Tue, 16 Jul 2013 11:49:57 -0400 (EDT)

Hello Kurt, Steve, vendors,

  while not listed in the announcement:
  [1] http://www.kde.org/announcements/announce-4.10.5.php

looks like kde-workspace v4.10.5 fixed two security flaws
(the second one a minor one):

* Issue #1 - Possible NULL pointer dereference in KDM and KCheckPass
             when glibc 2.17 (eglibc 2.17) or FIPS enabled system used
             Bug: https://git.reviewboard.kde.org/r/111261/
             Relevant patches:

* Issue #2 - Plasma desktop is leaking memory in X if some system tray icon is blinking
             Bug: https://bugs.kde.org/show_bug.cgi?id=314919
             Relevant patch:

Could you allocate CVE ids for these?

Thank you && Regards, Jan.
Jan iankko Lieskovsky / Red Hat Security Response Team

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]