Hi Steve,

Did you request a CVE for it already?
The below sentence:

> This allows the corruption of any file the user has permission to
> write to.

make me believe that the trust boundaries are not crossed here, thus
I suppose it will be tracked as a secuirity hardening issue, and not a
flaw.
What do you think?

Thanks.
-- 
Vasyl Kaigorodov | Red Hat Product Security
PGP:  0xABB6E828 A7E0 87FF 5AB5 48EB 47D0 2868 217B F9FC ABB6 E828

Attachment: pgpI3eve3p4Zm.pgp
Description: PGP signature

Reply via email to