Bug 22472 - apache-poi new security issue CVE-2017-12626
Summary: apache-poi new security issue CVE-2017-12626
Status: RESOLVED DUPLICATE of bug 19029
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Java Stack Maintainers
QA Contact: Sec team
URL:
Whiteboard: MGA6TOO
Keywords:
Depends on:
Blocks:
 
Reported: 2018-01-27 12:00 CET by David Walser
Modified: 2019-01-01 04:59 CET (History)
0 users

See Also:
Source RPM: apache-poi-3.14-1.mga6.src.rpm
CVE:
Status comment: Fixed upstream in 3.17


Attachments

Description David Walser 2018-01-27 12:00:00 CET
Upstream has issued an advisory on January 26:
http://openwall.com/lists/oss-security/2018/01/26/7

The issue is fixed in 3.17.

Mageia 5 and Mageia 6 are also affected.
David Walser 2018-01-27 12:00:09 CET

Whiteboard: (none) => MGA6TOO

David Walser 2018-02-02 18:32:14 CET

Status comment: (none) => Fixed upstream in 3.17

Comment 1 David Walser 2019-01-01 04:59:09 CET
Already noted in Bug 19029.

*** This bug has been marked as a duplicate of bug 19029 ***

Resolution: (none) => DUPLICATE
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.