Hi

Small updates on the assigned CVE's:

On Thu, Oct 17, 2013 at 11:14:23AM +0100, Steven Chamberlain wrote:
> CVE-2013-4443 Secure mode has bias towards numbers and uppercase letters
> 
> probably the least serious issue;  -n guarantees at least one numeral,
> -c guarantees at least one capital, instead of being a completely random
> selection.  Sometimes necessary if the password consumer enforces such a
> rule.

This indeed was rejected, see [1] and [2].

 [1] http://marc.info/?l=oss-security&m=138247862202393&w=2
 [2] http://marc.info/?l=oss-security&m=138249250706253&w=2

Regards,
Salvatore


-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to