Back to bug 744858

Who When What Removed Added
Ramon de C Valle 2011-10-10 17:03:41 UTC Blocks 744203
Whiteboard impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=notaffected,rhel-4/rpm=notaffected,rhel-5.3.z/rpm=notaffected,rhel-5.6.z/rpm=notaffected,rhel-5/rpm=notaffected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=notaffected,rhel-4/rpm=notaffected,rhel-5.3.z/rpm=notaffected,rhel-5.6.z/rpm=notaffected,rhel-5/rpm=notaffected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=notaffected
Ramon de C Valle 2011-10-10 17:05:48 UTC CC jnovy
Ramon de C Valle 2011-10-10 17:06:06 UTC CC pmatilai
Ramon de C Valle 2011-10-10 17:08:37 UTC Summary rpm: RPM rpmfiFNIndex heap-based buffer overflow EMBARGOED rpm: RPM rpmfiFNIndex heap-based buffer overflow
Panu Matilainen 2011-10-12 05:34:14 UTC Component vulnerability task
Tomas Hoger 2011-10-12 07:10:44 UTC Component task vulnerability
Ramon de C Valle 2011-10-13 01:23:45 UTC Summary EMBARGOED rpm: RPM rpmfiFNIndex heap-based buffer overflow EMBARGOED rpm: RPM rpmfiFNIndex improper validation of array index
Ramon de C Valle 2011-10-13 04:28:02 UTC Summary EMBARGOED rpm: RPM rpmfiFNIndex improper validation of array index EMBARGOED rpm: RPM rpmfiNext rpmfiFNIndex improper validation of array index
Ramon de C Valle 2011-10-14 17:43:47 UTC Summary EMBARGOED rpm: RPM rpmfiNext rpmfiFNIndex improper validation of array index EMBARGOED rpm: RPM rpmfiNext rpmfiFNIndex improper validation of array index, copyTdEntry integer overflow to buffer overflow, rpmReadSignature improper input validation
Ramon de C Valle 2011-10-17 11:21:48 UTC Whiteboard impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=notaffected,rhel-4/rpm=notaffected,rhel-5.3.z/rpm=notaffected,rhel-5.6.z/rpm=notaffected,rhel-5/rpm=notaffected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=notaffected impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6/rpm=affected fedora-all/rpm=affected
Ramon de C Valle 2012-01-23 12:08:42 UTC Summary EMBARGOED rpm: RPM rpmfiNext rpmfiFNIndex improper validation of array index, copyTdEntry integer overflow to buffer overflow, rpmReadSignature improper input validation EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validations, CVE-2012-0061: copyTdEntry integer overflow to buffer overflow
Ramon de C Valle 2012-01-23 12:09:13 UTC Summary EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validations, CVE-2012-0061: copyTdEntry integer overflow to buffer overflow EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061: copyTdEntry integer overflow to buffer overflow
Ramon de C Valle 2012-01-23 12:09:29 UTC Alias CVE-2012-0060
Ramon de C Valle 2012-01-23 12:09:44 UTC Alias CVE-2012-0061
Ramon de C Valle 2012-01-24 09:38:17 UTC Summary EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061: copyTdEntry integer overflow to buffer overflow EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061: copyTdEntry and copyI18NEntry multiple improper input validation
Ramon de C Valle 2012-01-26 16:17:08 UTC Summary EMBARGOED rpm: CVE-2012-0060: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061: copyTdEntry and copyI18NEntry multiple improper input validation EMBARGOED CVE-2012-0060 rpm: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061 rpm: copyTdEntry and copyI18NEntry multiple improper input validation
Ramon de C Valle 2012-01-26 16:51:48 UTC Alias CVE-2012-0061
Ramon de C Valle 2012-01-26 16:56:23 UTC Blocks 784927
Ramon de C Valle 2012-01-26 16:59:22 UTC Blocks 784927
Ramon de C Valle 2012-01-26 17:09:34 UTC Summary EMBARGOED CVE-2012-0060 rpm: rpmReadSignature and headerVerify multiple improper input validation, CVE-2012-0061 rpm: copyTdEntry and copyI18NEntry multiple improper input validation EMBARGOED CVE-2012-0060 rpm: rpmReadSignature and headerVerify multiple improper input validation
Ramon de C Valle 2012-01-27 11:01:14 UTC Whiteboard impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6/rpm=affected fedora-all/rpm=affected impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected
Ramon de C Valle 2012-01-27 11:12:17 UTC Depends On 785109
Ramon de C Valle 2012-01-27 11:12:32 UTC Depends On 785110
Ramon de C Valle 2012-01-27 11:12:43 UTC Depends On 785111
Ramon de C Valle 2012-01-27 11:12:54 UTC Depends On 785112
Ramon de C Valle 2012-01-27 11:13:05 UTC Depends On 785113
Ramon de C Valle 2012-01-30 12:23:57 UTC Whiteboard impact=important,public=no,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=20120215,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected
Ramon de C Valle 2012-01-30 15:23:09 UTC Whiteboard impact=important,public=20120215,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected
Ramon de C Valle 2012-01-30 15:29:28 UTC Depends On 785769
Ramon de C Valle 2012-01-30 16:38:28 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.6/rpm=affected,rhel-6.0/rpm=affected rhel-6.1/rpm=affected
Ramon de C Valle 2012-01-30 16:46:05 UTC Depends On 785807
Ramon de C Valle 2012-01-30 16:46:30 UTC Depends On 785803
Ramon de C Valle 2012-01-30 16:46:55 UTC Depends On 785805
Ramon de C Valle 2012-01-30 19:24:07 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.6/rpm=affected,rhel-6.0/rpm=affected rhel-6.1/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.3/rpm=affected,rhel-5.6/rpm=affected rhel-6.0/rpm=affected,rhel-6.1/rpm=affected
Ramon de C Valle 2012-01-30 19:34:13 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.3/rpm=affected,rhel-5.6/rpm=affected rhel-6.0/rpm=affected,rhel-6.1/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6/rpm=affected rhel-6.0/rpm=affected,rhel-6.1/rpm=affected
Ramon de C Valle 2012-01-30 19:37:16 UTC Depends On 785862
Ramon de C Valle 2012-01-30 19:42:20 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6/rpm=affected rhel-6.0/rpm=affected,rhel-6.1/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.6.z/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-5.3.z/rpm=affected
Tomas Hoger 2012-02-29 11:32:50 UTC Summary EMBARGOED CVE-2012-0060 rpm: rpmReadSignature and headerVerify multiple improper input validation EMBARGOED CVE-2012-0060 rpm: insufficient validation of region tags
Tomas Hoger 2012-02-29 14:35:59 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,rhel-5.6.z/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-5.3.z/rpm=affected impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected
Tomas Hoger 2012-03-27 12:49:25 UTC Whiteboard impact=important,public=20120301,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=20120403,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected
Patrik Kis 2012-03-29 08:16:24 UTC CC pkis
Tomas Hoger 2012-04-03 13:34:04 UTC Group security, qe_staff
Summary EMBARGOED CVE-2012-0060 rpm: insufficient validation of region tags CVE-2012-0060 rpm: insufficient validation of region tags
Tomas Hoger 2012-04-03 13:38:53 UTC Depends On 809487
Tomas Hoger 2012-04-03 14:18:34 UTC Fixed In Version rpm 4.9.1.3
devzero2000 2012-04-05 10:42:34 UTC CC pinto.elia
Tomas Hoger 2012-05-07 09:56:09 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2012-05-07 05:56:09 UTC
Patrik Kis 2012-06-11 11:09:13 UTC Depends On 830759
Ramon de C Valle 2012-07-09 17:34:13 UTC Whiteboard impact=important,public=20120403,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected impact=important,public=20120403,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119
John Skeoch 2013-10-14 01:01:33 UTC CC bressers
Product Security DevOps Team 2019-09-29 12:48:01 UTC Whiteboard impact=important,public=20120403,reported=20111010,source=redhat,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6.1.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119

Back to bug 744858