Bug 28453

Summary: sqlite3 new security issue CVE-2021-20227
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: All Packagers <pkg-bugs>
Status: RESOLVED FIXED QA Contact: Sec team <security>
Severity: major    
Priority: Normal CC: mageia
Version: 8   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: sqlite3-3.34.0-1.mga8.src.rpm CVE:
Status comment: Fixed upstream in 3.34.1

Description David Walser 2021-02-26 19:07:42 CET
Ubuntu has issued an advisory on February 11:
https://ubuntu.com/security/notices/USN-4732-1

The issue is fixed upstream in 3.34.1.

Mageia 8 is also affected.
David Walser 2021-02-26 19:07:55 CET

Status comment: (none) => Fixed upstream in 3.34.1
Whiteboard: (none) => MGA8TOO

Comment 1 Lewis Smith 2021-02-27 09:33:56 CET
Sqlite3 has been updated by different people, so assigning this globally.

Assignee: bugsquad => pkg-bugs

Comment 2 Nicolas Lécureuil 2021-02-28 22:01:27 CET
already fixed in cauldron

Version: Cauldron => 8
Whiteboard: MGA8TOO => (none)
CC: (none) => mageia

Comment 3 Nicolas Lécureuil 2021-02-28 22:06:25 CET
closing as mageia 8 is already with 3.34.1

8/SRPMS/core/release/sqlite3-3.34.1-1.mga8.src.rpm

Resolution: (none) => FIXED
Status: NEW => RESOLVED