Bug 19962

Summary: man-db new security issue fixed upstream in 2.7.6
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Thierry Vignaud <thierry.vignaud>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: normal    
Priority: Normal CC: mageia
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: man-db-2.7.5-3.mga6.src.rpm CVE:
Status comment:

Description David Walser 2016-12-17 00:59:46 CET
man-db has announced versions 2.7.6 and 2.7.6.1:
http://lists.nongnu.org/archive/html/man-db-announce/2016-12/msg00000.html
http://lists.nongnu.org/archive/html/man-db-announce/2016-12/msg00001.html

It sounds like there may need to be some packaging adjustments in addition to the version upgrade to fix this issue.  You can see the adjustments gentoo made here:
https://packages.gentoo.org/packages/sys-apps/man-db
Comment 1 Nicolas Lécureuil 2017-04-24 21:58:44 CEST
we have 2.7.6.1 in cauldron

CC: (none) => mageia
Status: NEW => RESOLVED
Resolution: (none) => FIXED