Bug 18587

Summary: jetty new security issue CVE-2016-4800
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Nicolas Lécureuil <mageia>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: normal    
Priority: Normal CC: geiger.david68210
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: jetty-9.3.7-0.1.v20160115.1.mga6.src.rpm CVE:
Status comment:

Description David Walser 2016-05-30 15:50:39 CEST
A security issue in Jetty has been announced today (May 30):
http://openwall.com/lists/oss-security/2016/05/30/4

The issue is fixed upstream in 9.3.9.

Mageia 5 is not affected.

A reminder that we still have Bug 8592 filed against this package.
David Walser 2016-05-30 15:50:48 CEST

CC: (none) => geiger.david68210

Comment 1 David Walser 2016-07-22 21:48:07 CEST
This is fixed in Fedora Rawhide, but not Fedora 24 yet.
Comment 2 Nicolas Lécureuil 2017-05-15 14:00:50 CEST
Fixed in cauldron

Resolution: (none) => FIXED
Status: NEW => RESOLVED