Bug 25934

Summary: libssh2 new security issue CVE-2019-13115
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Mageia Bug Squad <bugsquad>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: major    
Priority: Normal CC: nicolas.salguero
Version: 7   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: libssh2-1.8.2-1.1.mga7.src.rpm CVE:
Status comment:

Description David Walser 2019-12-23 21:24:26 CET
Fedora has issued an advisory on August 2:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/6LUNHPW64IGCASZ4JQ2J5KDXNZN53DWW/

The issue is fixed upstream in 1.9.0.
David Walser 2019-12-23 21:24:45 CET

CC: (none) => nicolas.salguero

Comment 1 Nicolas Salguero 2019-12-24 11:42:44 CET
Hi,

The patch for CVE-2019-17498 already contained the fix for CVE-2019-13115.

Best regards,

Nico.

*** This bug has been marked as a duplicate of bug 25704 ***

Status: NEW => RESOLVED
Resolution: (none) => DUPLICATE