Bug#793496: xfsprogs: CVE-2012-2150: xfs_metadump information disclosure flaw

Raphael Hertzog hertzog at debian.org
Fri Jul 24 10:53:50 CDT 2015


Source: xfsprogs
Severity: important
Tags: security

Hi,

the following vulnerability was published for xfsprogs.

CVE-2012-2150[0]:
xfs_metadump information disclosure flaw

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2012-2150
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2150
Please adjust the affected versions in the BTS as needed.

There are no upstream patches yet but they should be published shortly
according to https://marc.info/?l=oss-security&m=143766249112576&w=2

Cheers,
-- 
Raphaël Hertzog ◈ Debian Developer

Support Debian LTS: http://www.freexian.com/services/debian-lts.html
Learn to master Debian: http://debian-handbook.info/get/



More information about the xfs mailing list