From e6856e67ae7ced7e0945f35373a2ccf4e75dfe9b Mon Sep 17 00:00:00 2001 From: Alberto Leiva Popper Date: Mon, 14 Oct 2024 11:32:22 -0600 Subject: [PATCH] Name CVE-2024-48943 --- docs/CVE.md | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/docs/CVE.md b/docs/CVE.md index f6389d8d..9a2a7c1f 100644 --- a/docs/CVE.md +++ b/docs/CVE.md @@ -58,9 +58,7 @@ Certificate containing `signedAttrs` not in canonical form crashes Fort 1.6.2-. | Patch | Commit [521b1a0](https://github.com/NICMx/FORT-validator/commit/521b1a0db5041258096fbabdf8fc1e10ecc793cf), released in Fort 1.6.3. | | Acknowledgments | Thanks to Niklas Vogel and Haya Schulmann for their research and disclosure. | -## CVE-____-_____ - -(Awaiting CVE ID number assignment.) +## CVE-2024-48943 Malicious rsync repositories can block Fort by drip-feeding repository objects. -- 2.47.3