Bug 20113 - ed new security issue CVE-2017-5357
Summary: ed new security issue CVE-2017-5357
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: All Packagers
QA Contact: Sec team
URL: https://lwn.net/Vulnerabilities/712299/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-01-13 12:43 CET by David Walser
Modified: 2017-01-24 02:41 CET (History)
2 users (show)

See Also:
Source RPM: ed-1.13-1.mga6.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2017-01-13 12:43:15 CET
A CVE has been assigned for a security issue fixed upstream in ed 1.14.1:
http://openwall.com/lists/oss-security/2017/01/13/3
Comment 1 Marja Van Waes 2017-01-13 15:50:35 CET
Assigning to all packagers collectively, since there is no registered maintainer for this package.

CC: (none) => marja11
Assignee: bugsquad => pkg-bugs

Comment 2 Mike Rambo 2017-01-17 21:08:45 CET
Update to version 1.14.1 has been pushed to cauldron.

Status: NEW => RESOLVED
CC: (none) => mrambo
Resolution: (none) => FIXED

Comment 3 David Walser 2017-01-24 02:41:13 CET
Fedora has issued an advisory for this on February 20:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/ZVH54XNZ77ICNBJTPI2DLJYQTA3SYSFC/

URL: (none) => https://lwn.net/Vulnerabilities/712299/


Note You need to log in before you can comment on or make changes to this bug.