oss-sec mailing list archives

CVE-2011-4858 confusion


From: Sebastian Krahmer <krahmer () suse de>
Date: Wed, 4 Jan 2012 11:40:40 +0100

Hi,

According to

https://bugzilla.redhat.com/show_bug.cgi?id=770929

the tomcat hash collision thing got a new CVE?

So CVE-2011-4084 is invalidated and we need to use CVE-2011-4858. Is that correct?

Sebastian


-- 

~ perl self.pl
~ $_='print"\$_=\47$_\47;eval"';eval
~ krahmer () suse de - SuSE Security Team

---
SUSE LINUX Products GmbH,
GF: Jeff Hawn, Jennifer Guild, Felix Imendörffer, HRB 16746 (AG Nürnberg)
Maxfeldstraße 5
90409 Nürnberg
Germany


Current thread: