Page 1 of 1

Patch proposal to fix an old CVE

Posted: Wed Jul 05, 2023 6:46 am
by AndreaManzini
Hello, I recently packaged this cool game Rocks'n'Diamonds on openSUSE: https://build.opensuse.org/package/show ... sndiamonds
and noticed that the package comes with a patch to address an old security issue : https://cve.mitre.org/cgi-bin/cvename.c ... =2011-4606

May I ask if there's a chance to include the patch directly in the upstream source code ? I guess that would be beneficial for everyone.

Many thanks

Re: Patch proposal to fix an old CVE

Posted: Wed Oct 29, 2025 2:03 am
by ketmar
i always wondered who is that mysterious "attacker" on my home PC, and how he managed to get there. actually, if i have that "attacker" active, RnD wrong access rights on fresh config dir would be the tiniest of my problems…