| Summary: | curl new security issue CVE-2018-1000007 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | Shlomi Fish <shlomif> |
| Status: | RESOLVED OLD | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | CC: | marja11 |
| Version: | 5 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Source RPM: | curl-7.40.0-3.14.mga5.src.rpm | CVE: | |
| Status comment: | Fix checked into SVN | ||
| Bug Depends on: | 22445, 22772 | ||
| Bug Blocks: | |||
Assigning to the registered maintainer.
@ David
I don't understand why you set:
Flags: (none) => in_errata7-Assignee:
bugsquad =>
shlomif I didn't, it did that when I cloned the other bug. I tried to remove it. It didn't work. Flags:
in_errata7- =>
(none) Debian has issued an advisory for this on January 26: https://www.debian.org/security/2018/dsa-4098 CVE-2018-1000005 does not affect Mageia 5. Rediffed patch from Debian checked into Mageia 5 SVN for CVE-2018-1000007. Summary:
curl new security issues CVE-2018-1000005 and CVE-2018-1000007 =>
curl new security issue CVE-2018-1000007
David Walser
2018-02-02 18:11:27 CET
Status comment:
(none) =>
Fix checked into SVN
David Walser
2018-05-16 13:58:42 CEST
Depends on:
(none) =>
22772 Upstream has issued an advisory today (September 5): https://curl.haxx.se/docs/CVE-2018-14618.html The limited support Mga5 continued to have after its official EOL has ended, so closing this bug as OLD. Resolution:
(none) =>
OLD |
Flags: (none) => in_errata7-