Bug 18596

Summary: kinit new security issue fixed upstream after 5.22.0 (CVE-2016-3100)
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Nicolas Lécureuil <mageia>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: normal    
Priority: Normal CC: geiger.david68210
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
URL: http://lwn.net/Vulnerabilities/689256/
Whiteboard:
Source RPM: kinit-5.22.0-1.mga6.src.rpm CVE:
Status comment:

Description David Walser 2016-06-01 13:28:09 CEST
Fedora has issued an advisory on May 24:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/KNUGLEN6CX2PXMLBRZJVDF2JPUCV2U6G/

They added upstream patches referenced here:
http://bugs.kde.org/358593
Comment 1 David GEIGER 2016-06-10 12:26:42 CEST
Done!

CC: (none) => geiger.david68210

Comment 2 David Walser 2016-06-10 12:30:39 CEST
Thanks!

Status: NEW => RESOLVED
Resolution: (none) => FIXED

Comment 3 David Walser 2016-07-05 21:02:47 CEST
This is apparently CVE-2016-3100:
http://lwn.net/Vulnerabilities/693481/

Summary: kinit new security issue fixed upstream after 5.22.0 => kinit new security issue fixed upstream after 5.22.0 (CVE-2016-3100)