Bug 20094 - ark new security issue CVE-2017-5330
Summary: ark new security issue CVE-2017-5330
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: KDE maintainers
QA Contact: Sec team
URL: https://lwn.net/Vulnerabilities/711581/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-01-10 15:29 CET by David Walser
Modified: 2017-01-15 00:12 CET (History)
1 user (show)

See Also:
Source RPM: ark-16.12.0-1.mga6.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2017-01-10 15:29:10 CET
A CVE has been assigned for a security issue fixed upstream in ark:
http://openwall.com/lists/oss-security/2017/01/10/2

The upstream commit to fix the issue is linked in the message above.  The fix will be included in 16.12.1.

Mageia 5 is not affected.

The upstream advisory has not been posted yet but will be linked from here:
https://www.kde.org/info/security/
Comment 1 Nicolas Lécureuil 2017-01-10 19:34:29 CET
fixed

Status: NEW => RESOLVED
CC: (none) => mageia
Resolution: (none) => FIXED

David Walser 2017-01-15 00:12:51 CET

URL: (none) => https://lwn.net/Vulnerabilities/711581/


Note You need to log in before you can comment on or make changes to this bug.