Bug 22242

Summary: glibc new security issues CVE-2017-15804 and CVE-2017-17426
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Thomas Backlund <tmb>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: major    
Priority: Normal    
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard: MGA6TOO, MGA5TOO
Source RPM: glibc-2.22-25.mga6.src.rpm CVE:
Status comment:

Description David Walser 2017-12-20 00:25:42 CET
Fedora has issued an advisory today (December 19):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/EDUHINZZK3RNIR432L7NSD655OLMDULR/

Mageia 5 and Mageia 6 are also affected.
David Walser 2017-12-20 00:25:50 CET

Whiteboard: (none) => MGA6TOO, MGA5TOO

Comment 1 Thomas Backlund 2017-12-21 16:57:33 CET
CVE-2017-15804 is already fixed in the bug#21582 update queued for testing

CVE-2017-17426 only affects glibc 2.26 and newer

*** This bug has been marked as a duplicate of bug 21582 ***

Resolution: (none) => DUPLICATE
Status: NEW => RESOLVED