| Summary: | qpdf new security issue CVE-2021-36978 and CVE-2022-34503 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | Thierry Vignaud <thierry.vignaud> |
| Status: | RESOLVED INVALID | QA Contact: | Sec team <security> |
| Severity: | major | ||
| Priority: | Normal | CC: | marja11, nicolas.salguero |
| Version: | 8 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Source RPM: | qpdf-10.1.0-1.mga8.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2022-08-04 19:11:54 CEST
Equivalent openSUSE advisory: https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/OUQDLYDYOPUEJQGXQMGMCV5P2WXSPVYQ/ Assigning to our registered qpdf maintainer CC:
(none) =>
marja11 Hi, According to Debian, CVE-2021-36978 was fixed in version 10.1.0 and CVE-2022-34503 was fixed in 9.0.0 so Mageia 8 should not be affected. Best regards, Nico. CC:
(none) =>
nicolas.salguero Thanks. Status:
NEW =>
RESOLVED |