<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>94917</bug_id>
          
          <creation_ts>2005-06-03 06:30 0000</creation_ts>
          <short_desc>sys-fs/fuse: Exposure of Sensitive Information</short_desc>
          <delta_ts>2005-06-09 10:33:35 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Vulnerabilities</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          <bug_file_loc>http://secunia.com/advisories/15561/</bug_file_loc>
          <status_whiteboard>B4 [noglsa]</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>minor</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>adirab@gmail.com</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>genstef@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>adirab@gmail.com</who>
            <bug_when>2005-06-03 06:30:48 0000</bug_when>
            <thetext>From Secunia: 

Description:
A security issue has been reported in FUSE, which potentially can be exploited
by malicious, local users to disclose sensitive information.

The problem is that certain memory content is not correctly cleared before being
returned to users and may contain sensitive information.

Solution:
Update to version 2.3.0.
http://sourceforge.net/project/showfiles.php?group_id=121684

Reproducible: Always
Steps to Reproduce:</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-06-03 08:10:11 0000</bug_when>
            <thetext>Stefan, please bump ?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-06-08 06:41:09 0000</bug_when>
            <thetext>ppc, please test and mark stable</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>hansmi@gentoo.org</who>
            <bug_when>2005-06-08 10:33:31 0000</bug_when>
            <thetext>Stable on ppc.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-06-08 11:31:38 0000</bug_when>
            <thetext>GLSA vote --&gt; I vote NO</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2005-06-08 13:30:26 0000</bug_when>
            <thetext>I tend to vote NO as well. </thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2005-06-09 10:33:35 0000</bug_when>
            <thetext>Closing...
Anyone wanting to vote YES please reopen</thetext>
          </long_desc>
      
    </bug>

</bugzilla>