Bug#798466: ruby-devise-two-factor: TOTP Replay Attack (no CVE yet)

2015-09-17 Thread Salvatore Bonaccorso
Control: retitle ruby-devise-two-factor: CVE-2015-7225: TOTP Replay Attack Hi, On Wed, Sep 09, 2015 at 07:10:29PM +0200, Moritz Muehlenhoff wrote: > Package: ruby-devise-two-factor > Severity: grave > Tags: security > Justification: user security hole > > Hi, > please see http://www.openwall.com

Bug#798466: ruby-devise-two-factor: TOTP Replay Attack (no CVE yet)

2015-09-09 Thread Moritz Muehlenhoff
Package: ruby-devise-two-factor Severity: grave Tags: security Justification: user security hole Hi, please see http://www.openwall.com/lists/oss-security/2015/09/06/2 for details. Cheers, Moritz