Bug#849950: [Pkg-freeipa-devel] Bug#849950: freeipa: CVE-2016-9575: Insufficient permission check in certprofile-mod

2017-01-02 Thread Salvatore Bonaccorso
Hello Timo, On Tue, Jan 03, 2017 at 12:40:10AM +0200, Timo Aaltonen wrote: > On 02.01.2017 17:45, Salvatore Bonaccorso wrote: > > Source: freeipa > > Version: 4.3.2-5 > > Severity: grave > > Tags: upstream security > > Justification: user security hole > > > > Hi, > > > > the following

Bug#849950: [Pkg-freeipa-devel] Bug#849950: freeipa: CVE-2016-9575: Insufficient permission check in certprofile-mod

2017-01-02 Thread Timo Aaltonen
On 02.01.2017 17:45, Salvatore Bonaccorso wrote: > Source: freeipa > Version: 4.3.2-5 > Severity: grave > Tags: upstream security > Justification: user security hole > > Hi, > > the following vulnerability was published for freeipa. Note that I'm > not too familiar with freeipa, so just checked

Bug#849950: freeipa: CVE-2016-9575: Insufficient permission check in certprofile-mod

2017-01-02 Thread Salvatore Bonaccorso
Source: freeipa Version: 4.3.2-5 Severity: grave Tags: upstream security Justification: user security hole Hi, the following vulnerability was published for freeipa. Note that I'm not too familiar with freeipa, so just checked source wise. The code should be present in