Bug 27330

Summary: gnuplot new security issues CVE-2018-1949[0-2]
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: All Packagers <pkg-bugs>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: normal    
Priority: Normal CC: joequant, joequant, nicolas.salguero, ouaurelien
Version: 7   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: gnuplot-5.2.2-5.mga7.src.rpm CVE:
Status comment:

Description David Walser 2020-09-26 20:12:02 CEST
Ubuntu has issued an advisory on September 25:
https://ubuntu.com/security/notices/USN-4541-1

I believe the issues were fixed upstream in 5.2.6.
Comment 1 Aurelien Oudelet 2020-09-26 23:31:38 CEST
Thanks reporting this.
As there is no registered packager, assigning to all.
CC'ed recent committer.

(Packagers: Please change status to "Assigned" when you are working on this.)

Assignee: bugsquad => pkg-bugs
CC: (none) => joequant, joequant, ouaurelien

Comment 2 Nicolas Salguero 2020-11-02 10:00:42 CET
Hi,

Those CVEs are already fixed in gnuplot-5.2.2-5.mga7 (see bug 24754).

Best regards,

Nico.

CC: (none) => nicolas.salguero
Status: NEW => RESOLVED
Resolution: (none) => FIXED

Comment 3 David Walser 2020-11-02 16:11:39 CET
Thanks.

*** This bug has been marked as a duplicate of bug 24754 ***

Resolution: FIXED => DUPLICATE