|
Message-ID: <20130518205000.GC8473@kludge.henri.nerv.fi>
Date: Sat, 18 May 2013 23:50:00 +0300
From: Henri Salo <henri@...v.fi>
To: oss-security@...ts.openwall.com, kseifried@...hat.com
Cc: Doraemon Sk8ers <doraemon.sk8ers@...il.com>
Subject: Re: Multiple vulnerabilities in PHP Address Book
v8.2.5
On Fri, May 10, 2013 at 08:14:34PM -0600, Kurt Seifried wrote:
> > CVE-2013-1748 #1 does seems to be similar with CVE-2008-2565, the
> > only difference is the increase in the number of columns To our
> > knowledge, CVE-2013-1748 #2 and #3 has not been published before
>
> So can we confirm that CVE-2013-1748 #1 is duplicate of CVE-2008-2565
> and that #2 and #3 are new? if so can we just use CVE-2013-1748 for #2
> and #3 Steve?
As far as I can tell - yes.
---
Henri Salo
Download attachment "signature.asc" of type "application/pgp-signature" (199 bytes)
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.