Bug 20660 - bouncycastle new security issue CVE-2015-6644
Summary: bouncycastle new security issue CVE-2015-6644
Status: RESOLVED OLD
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 5
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Nicolas Lécureuil
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on: 22197
Blocks:
  Show dependency treegraph
 
Reported: 2017-04-14 21:46 CEST by David Walser
Modified: 2017-12-27 05:01 CET (History)
1 user (show)

See Also:
Source RPM: bouncycastle-1.52-9.mga6.src.rpm
CVE: CVE-2015-6644
Status comment:


Attachments

Description David Walser 2017-04-14 21:46:03 CEST
Debian has issued an advisory on April 11:
https://www.debian.org/security/2017/dsa-3829

Mageia 5 is also affected.
David Walser 2017-04-14 21:46:13 CEST

CC: (none) => geiger.david68210
Whiteboard: (none) => MGA5TOO

Nicolas Lécureuil 2017-04-22 22:23:55 CEST

CVE: (none) => CVE-2015-6644

Comment 1 David Walser 2017-05-02 03:28:45 CEST
Fedora has issued an advisory for this today (May 1):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/LYJQXCWHEXN4ZA3PT2EF42TX64VD5NMP/
Comment 2 Nicolas Lécureuil 2017-05-03 12:31:42 CEST
Fixed in cauldron

Whiteboard: MGA5TOO => (none)
Version: Cauldron => 5

Comment 3 David Walser 2017-05-03 12:36:20 CEST
Or not :o)

Whiteboard: (none) => MGA5TOO
Version: 5 => Cauldron

Comment 4 Nicolas Lécureuil 2017-05-03 14:55:00 CEST
or yes ;)

Whiteboard: MGA5TOO => (none)
Version: Cauldron => 5

David Walser 2017-12-15 20:54:28 CET

Depends on: (none) => 22197

Comment 5 David Walser 2017-12-27 05:01:10 CET
We won't be fixing this type of package for Mageia 5.

Status: NEW => RESOLVED
Resolution: (none) => OLD


Note You need to log in before you can comment on or make changes to this bug.