Bug 27569

Summary: tmux new security issue CVE-2020-27347
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Johnny A. Solbu <cooker>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: major    
Priority: Normal Keywords: Triaged
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: tmux-3.1b-1.mga8.src.rpm CVE:
Status comment:

Description David Walser 2020-11-06 00:34:40 CET
Ubuntu has issued an advisory today (November 5):
https://ubuntu.com/security/notices/USN-4618-1
Comment 1 David Walser 2020-11-06 00:38:24 CET
openSUSE has issued an advisory for this tomorrow (November 6):
https://lists.opensuse.org/opensuse-security-announce/2020-11/msg00022.html

The issue appears to be fixed upstream in 3.1c.
Comment 2 David Walser 2020-11-06 00:58:17 CET
More information:
https://www.openwall.com/lists/oss-security/2020/11/05/3
Comment 3 Aurelien Oudelet 2020-11-07 10:14:55 CET
Hi, thanks for reporting this.
Assigned to the package maintainer.

(Please set the status to 'assigned' if you are working on it)

Keywords: (none) => Triaged
Assignee: bugsquad => cooker

Comment 4 David Walser 2020-12-04 00:20:55 CET
tmux-3.1c-1.mga8 uploaded for Cauldron.

Resolution: (none) => FIXED
Status: NEW => RESOLVED