Bug 24607

Summary: golang-googlecode-go-crypto new security issue fixed upstream (CVE-2019-11840)
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Joseph Wang <joequant>
Status: RESOLVED OLD QA Contact: Sec team <security>
Severity: major    
Priority: Normal CC: marja11, mhrambo3501
Version: 6   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: golang-googlecode-go-crypto-0.26.20181119gite84da03.mga7.src.rpm CVE:
Status comment:

Description David Walser 2019-03-31 21:54:24 CEST
Fedora has issued an advisory today (March 31):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/TE5U7H5OJF3CY3LZI6W22HEBOPJ2VU4N/

Mageia 6 is also affected.
David Walser 2019-03-31 21:54:31 CEST

Whiteboard: (none) => MGA6TOO

Comment 1 Marja Van Waes 2019-06-20 14:38:58 CEST
golang-googlecode-go-crypto-0-0.29.mga7 was pushed on April 9:

joequant <joequant> 0-0.29.mga7:
+ Revision: 1387551
- update to fix #24607

I don't see it got fixed for Mageia 6

Whiteboard: MGA6TOO => (none)
Version: Cauldron => 6
CC: (none) => marja11

Comment 2 Mike Rambo 2019-11-06 21:23:52 CET
Mageia 6 is EOL.

Status: NEW => RESOLVED
Resolution: (none) => OLD
CC: (none) => mrambo

David Walser 2019-12-13 18:03:04 CET

Summary: golang-googlecode-go-crypto new security issue fixed upstream => golang-googlecode-go-crypto new security issue fixed upstream (CVE-2019-11840)