From c5c630ce3ef94cc36ea40d1c7729da30ced135ff Mon Sep 17 00:00:00 2001 From: Reiner Herrmann Date: Sat, 7 Jan 2017 20:00:06 +0100 Subject: Reference new CVEs --- RELNOTES | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/RELNOTES b/RELNOTES index 5d5c93e63..a14200a0f 100644 --- a/RELNOTES +++ b/RELNOTES @@ -1,9 +1,10 @@ firejail (0.9.45) baseline; urgency=low * development version, work in progress - * security: --bandwidth root shell found by Martin Carpenter + * security: --bandwidth root shell found by Martin Carpenter (CVE-2017-5207) * security: disabled --allow-debuggers when running on kernel versions prior to 4.8; a kernel bug in ptrace system call allows a full bypass of seccomp filter; problem reported by Lizzie Dixon + (CVE-2017-5206) * security: overwrite /etc/resolv.conf found by Martin Carpenter (CVE-2016-10118) * secuirty: TOCTOU exploit for --get and --put found by Daniel Hodson * security: invalid environment exploit found by Martin Carpenter (CVE-2016-10122) -- cgit v1.2.3-70-g09d2