Bug 23696

Summary: libbson new security issue CVE-2018-16790
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Guillaume Rousse <guillomovitch>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: major    
Priority: Normal    
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: libbson-1.9.5-2.mga7.src.rpm CVE:
Status comment:

Comment 2 Guillaume Rousse 2018-10-27 10:37:12 CEST
mongo-c-driver package updated in cauldron.
Comment 3 Guillaume Rousse 2018-10-27 10:37:33 CEST
Fixed.

Resolution: (none) => FIXED
Status: NEW => RESOLVED

Comment 4 David Walser 2018-10-27 14:29:22 CEST
You forgot to fix libbson.

Status: RESOLVED => REOPENED
Resolution: FIXED => (none)

Comment 5 Guillaume Rousse 2018-10-27 15:11:51 CEST
libbson standalone package is obsolete, its content is now provided by mongo-c-driver package. Excepted removing it from mirrors (which seem to be already done), there isn't much to fix.
Comment 6 David Walser 2018-10-27 15:15:32 CEST
I see, thanks.

Resolution: (none) => FIXED
Status: REOPENED => RESOLVED