| Summary: | python-reportlab new security issue fixed upstream in 3.6.13 (CVE-2023-33733) | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | CC: | andrewsfarm, davidwhodgins, herman.viaene, sysadmin-bugs, yvesbrungard |
| Version: | 8 | Keywords: | advisory, validated_update |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA8-64-OK | ||
| Source RPM: | python-reportlab-3.6.11-1.mga9.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2023-05-15 17:04:52 CEST
David Walser
2023-05-15 17:05:03 CEST
Whiteboard:
(none) =>
MGA8TOO No one packager evident for python-reportlab, so assigning this to the python group. Assignee:
bugsquad =>
python Cauldron and Mageia 8 updated in testing with 3.6.13 release. RPMs: python-reportlab-docs-3.6.13-1.mga8 python3-reportlab-3.6.13-1.mga8 Source python-reportlab-3.6.13-1.mga8 Assignee:
python =>
qa-bugs MGA8-64 MATE on Acer Aspire 5253 No installation issues. Ref bug for testing: installed ocrfeeder under strace, opened an jpg file and exported to an odt file. Trace shows refs to reportlab. OK for me. Whiteboard:
(none) =>
MGA8-64-OK Validating. CC:
(none) =>
andrewsfarm, sysadmin-bugs
Dave Hodgins
2023-05-21 23:39:29 CEST
Keywords:
(none) =>
advisory An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2023-0186.html Status:
NEW =>
RESOLVED This is CVE-2023-33733: https://www.bleepingcomputer.com/news/security/exploit-released-for-rce-flaw-in-popular-reportlab-pdf-library/ Summary:
python-reportlab new security issue fixed upstream in 3.6.13 =>
python-reportlab new security issue fixed upstream in 3.6.13 (CVE-2023-33733) |