| Summary: | tmux new security issue CVE-2022-47016 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | major | ||
| Priority: | Normal | CC: | andrewsfarm, davidwhodgins, marja11, nicolas.salguero, sysadmin-bugs |
| Version: | 8 | Keywords: | advisory, validated_update |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA8-64-OK | ||
| Source RPM: | tmux-3.1c-1.mga8.src.rpm | CVE: | CVE-2022-47016 |
| Status comment: | |||
|
Description
David Walser
2023-02-01 18:21:31 CET
David Walser
2023-02-01 18:22:05 CET
Status comment:
(none) =>
Patch available from upstream openSUSE reference: https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/RLXFZY2LCNARDYLW75IRAC42GRUF4DMZ/ Assigning to our tmux maintainer. Assignee:
bugsquad =>
cooker Ubuntu has issued an advisory for this on February 6: https://ubuntu.com/security/notices/USN-5843-1 Severity:
normal =>
major Suggested advisory: ======================== The updated package fixes a security vulnerability: Fixed a null pointer dereference in window.c. (CVE-2022-47016) References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-47016 https://lists.suse.com/pipermail/sle-security-updates/2023-February/013614.html https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/RLXFZY2LCNARDYLW75IRAC42GRUF4DMZ/ https://ubuntu.com/security/notices/USN-5843-1 ======================== Updated package in core/updates_testing: ======================== tmux-3.1c-1.1.mga8 from SRPM: tmux-3.1c-1.1.mga8.src.rpm Whiteboard:
MGA8TOO =>
(none) MGA8-64 Plasma session in VirtualBox: No installation issues. Previous updates offered little help, so I sought guidance with DuckDuckGo, and found https://www.howtogeek.com/671422/how-to-use-tmux-on-linux-and-why-its-better-than-screen/ I tried several of the basic commands from the tutorial, with no issues. Giving this an OK, and validating. Advisory in comment 4. Keywords:
(none) =>
validated_update
Dave Hodgins
2023-03-11 00:31:24 CET
CC:
(none) =>
davidwhodgins An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2023-0084.html Status:
ASSIGNED =>
RESOLVED |