Bug 31795

Summary: polkit possible new security issue rhbz#2182784
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: All Packagers <pkg-bugs>
Status: RESOLVED OLD QA Contact: Sec team <security>
Severity: normal    
Priority: Normal CC: nicolas.salguero
Version: 8   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: polkit-0.118-1.3.mga8.src.rpm CVE:
Status comment:

Description David Walser 2023-04-13 18:13:37 CEST
Fedora has issued an advisory today (April 13):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/TIUNNQAVTSJNSIPZFJJWU46DXI44JUNE/

This stemmed from a discussion on oss-security here:
https://www.openwall.com/lists/oss-security/2023/03/29/3

I made the same change as Fedora in polkit-122-2.mga9.

It sounds very hypothetical and we probably don't need to do it for Mageia 8, but I'm filing this bug just to have it on file.
Comment 1 Lewis Smith 2023-04-13 21:45:58 CEST
Assigning this globally. In the light of Luig'is comment above, this might reasoably be closed 'wontfix' for M8; M9 already done.

Assignee: bugsquad => pkg-bugs

Comment 2 Nicolas Salguero 2024-03-12 11:06:30 CET
Mageia 8 EOL.

Status: NEW => RESOLVED
Resolution: (none) => OLD
CC: (none) => nicolas.salguero