Bug 19606 - libarchive new security issues CVE-2016-868[7-9]
Summary: libarchive new security issues CVE-2016-868[7-9]
Status: RESOLVED DUPLICATE of bug 19351
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Mageia Bug Squad
QA Contact: Sec team
URL:
Whiteboard: MGA5TOO
Keywords:
Depends on:
Blocks:
 
Reported: 2016-10-16 22:47 CEST by David Walser
Modified: 2016-10-17 12:26 CEST (History)
1 user (show)

See Also:
Source RPM: libarchive-3.2.1-4.mga6.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2016-10-16 22:47:56 CEST
CVEs have been assigned for multiple security issues fixed upstream in libarchive:
http://openwall.com/lists/oss-security/2016/10/16/11

Links to commits to fix the issues are included in the message above.
David Walser 2016-10-16 22:48:03 CEST

Whiteboard: (none) => MGA5TOO

Comment 1 Nicolas Salguero 2016-10-17 09:58:06 CEST
Hi,

All those security issues are already corrected in our packages because:
  - CVE-2016-8687 is Issue #767
  - CVE-2016-8688 is Issue #747
  - CVE-2016-8689 is Issue #761

As you can see in bug 19351.

Best regards,

Nico.

Status: NEW => RESOLVED
CC: (none) => nicolas.salguero
Resolution: (none) => FIXED

Comment 2 David Walser 2016-10-17 12:26:11 CEST
Thanks.  Marking as duplicate then.

*** This bug has been marked as a duplicate of bug 19351 ***

Resolution: FIXED => DUPLICATE


Note You need to log in before you can comment on or make changes to this bug.