Bug 21208 - qtwebkit5 several security issues fixed in new branch
Summary: qtwebkit5 several security issues fixed in new branch
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 6
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: KDE maintainers
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks: 22657
  Show dependency treegraph
 
Reported: 2017-07-09 03:14 CEST by David Walser
Modified: 2018-05-14 07:15 CEST (History)
4 users (show)

See Also:
Source RPM: qtwebkit-5.6.2-2.mga6.src.rpm
CVE:
Status comment: Should be fixed in big Plasma update


Attachments

Description David Walser 2017-07-09 03:14:32 CEST
Fedora has issued an advisory today (July 8):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/JKZR2CIDUZGQ7W2N2E5CENX2EV42UW3D/

They switched to a new fork that is actually being maintained.

We can probably do it too for at least Mageia 6.  I'm not sure about Mageia 5.
David Walser 2017-07-09 03:14:41 CEST

Whiteboard: (none) => MGA6TOO, MGA5TOO

Comment 1 Nicolas Lécureuil 2017-07-09 08:13:02 CEST
we can test this on cauldron when it will reopen and see if this is safe for mga6

CC: (none) => mageia

Comment 2 David Walser 2017-12-28 17:22:07 CET
We won't be fixing this for Mageia 5.

Whiteboard: MGA6TOO, MGA5TOO => MGA6TOO

Comment 3 David Walser 2018-01-04 23:40:55 CET
qtwebkit5-5.212.0-1.alpha2.2.mga7 uploaded for Cauldron by Nicolas.

Whiteboard: MGA6TOO => (none)
Version: Cauldron => 6

David Walser 2018-02-02 18:14:21 CET

Status comment: (none) => Should be fixed in big Plasma update

Comment 4 David Walser 2018-02-11 17:08:56 CET
qtwebkit5-5.212.0-1.alpha2.6.mga6
libqt5webkitwidgets5-5.212.0-1.alpha2.6.mga6
libqt5webkitwidgets-devel-5.212.0-1.alpha2.6.mga6
libqt5webkit5-5.212.0-1.alpha2.6.mga6
libqt5webkit-devel-5.212.0-1.alpha2.6.mga6

from qtwebkit5-5.212.0-1.alpha2.6.mga6.src.rpm

built for the Qt5/KF5/Plasma5 update.
Comment 5 David Walser 2018-03-05 17:24:03 CET
qtwebkit5-5.212.0-1.alpha2.7.mga6
libqt5webkitwidgets5-5.212.0-1.alpha2.7.mga6
libqt5webkitwidgets-devel-5.212.0-1.alpha2.7.mga6
libqt5webkit5-5.212.0-1.alpha2.7.mga6
libqt5webkit-devel-5.212.0-1.alpha2.7.mga6

from qtwebkit5-5.212.0-1.alpha2.7.mga6.src.rpm

rebuilt for Qt 5.9.4.

Blocks: (none) => 22657

Comment 6 Thomas Backlund 2018-05-11 22:22:57 CEST
Pushed out as part of the big QT/Plasma/KF/KDE/... update

Status: NEW => RESOLVED
CC: (none) => tmb
Resolution: (none) => FIXED

Comment 7 Dimitrios Glentadakis 2018-05-13 06:26:43 CEST
I have this bug of webkit now in trojita (mga6)
https://github.com/annulen/webkit/issues/511

CC: (none) => dglent

Comment 8 David GEIGER 2018-05-13 07:15:43 CEST
(In reply to Dimitrios Glentadakis from comment #7)
> I have this bug of webkit now in trojita (mga6)
> https://github.com/annulen/webkit/issues/511

Please open a new bug for that and I'll fix this issue.

CC: (none) => geiger.david68210

Comment 9 Dimitrios Glentadakis 2018-05-14 07:15:03 CEST
Here: https://bugs.mageia.org/show_bug.cgi?id=23032

Note You need to log in before you can comment on or make changes to this bug.