| Summary: | ansible new security issue CVE-2016-9587 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Philippe Makowski <makowski.mageia> |
| Component: | Security | Assignee: | Bruno Cornec <bruno> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | CC: | mageia |
| Version: | Cauldron | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | https://lwn.net/Articles/711357/ | ||
| Whiteboard: | |||
| Source RPM: | CVE: | CVE-2016-9587 | |
| Status comment: | |||
|
Description
Philippe Makowski
2017-01-13 14:22:07 CET
Philippe Makowski
2017-01-13 14:23:55 CET
URL:
(none) =>
https://lwn.net/Articles/711357/ Upstream commit to fix this : https://github.com/ansible/ansible/commit/ec84ff6de6eca9224bf3f22b752bb8da806611ed (v2.2.1.0-0.3.rc3) https://github.com/ansible/ansible/commit/eb8c26c105e8457b86324b64a13fac37d8862d47 (v2.2.1.0-0.4.rc4) https://github.com/ansible/ansible/commit/cc4634a5e73c06c6b4581f11171289ca9228391e (v2.2.1.0-0.4.rc4) cf Debian https://security-tracker.debian.org/tracker/CVE-2016-9587
Jani Välimaa
2017-01-23 20:15:10 CET
Component:
RPM Packages =>
Security I updated cauldron with ansible 2.2.1.0 Let me know wht you think for mga5: should I backport it there (for me it's working, but it may create compatibility issues wrt 1.9.6 we have now) Status:
NEW =>
ASSIGNED does not seems valid on mga5. Please reopen if i am wrong CC:
(none) =>
mageia does not seems valid on mga5. Please reopen if i am wrong Resolution:
(none) =>
FIXED |