Bug 23224

Summary: pass new security issue CVE-2018-12356
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Philippe Makowski <makowski.mageia>
Status: RESOLVED OLD QA Contact: Sec team <security>
Severity: major    
Priority: Normal CC: geiger.david68210, mhrambo3501
Version: 6   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: pass-1.7.1-2.mga7.src.rpm CVE:
Status comment:

Description David Walser 2018-06-24 22:48:14 CEST
Fedora has issued an advisory on June 23:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/VXZ3257OJCOHBZZYBLZFMRA3E4MRS4CV/

The issue is fixed upstream in 1.7.2.

Mageia 6 is also affected.
David Walser 2018-06-24 22:48:21 CEST

Whiteboard: (none) => MGA6TOO

Comment 1 David Walser 2019-01-01 02:31:13 CET
Cauldron updated to 1.7.3 by David Geiger.

CC: (none) => geiger.david68210
Version: Cauldron => 6
Whiteboard: MGA6TOO => (none)

Comment 2 Mike Rambo 2019-11-06 13:30:42 CET
Mageia 6 is EOL.

CC: (none) => mrambo
Status: NEW => RESOLVED
Resolution: (none) => OLD