Bug 22887 - wayland new security issue CVE-2017-16612
Summary: wayland new security issue CVE-2017-16612
Status: RESOLVED DUPLICATE of bug 22241
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 6
Hardware: All Linux
Priority: Normal major
Target Milestone: ---
Assignee: Olivier Blin
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2018-04-09 23:02 CEST by David Walser
Modified: 2019-01-01 21:28 CET (History)
2 users (show)

See Also:
Source RPM: wayland-1.14.0-2.mga7.src.rpm
CVE:
Status comment: Patch available from Ubuntu


Attachments

Description David Walser 2018-04-09 23:02:29 CEST
Ubuntu has issued an advisory today (April 9):
https://usn.ubuntu.com/3622-1/

The CVE was originally for libXcursor, which was fixed in Bug 22102.

Mageia 5 and Mageia 6 are also affected.
David Walser 2018-04-09 23:02:36 CEST

Whiteboard: (none) => MGA6TOO

Comment 1 Marja Van Waes 2018-04-10 09:40:58 CEST
Assigning to the registered maintainer.

Assignee: bugsquad => mageia
CC: (none) => marja11

David Walser 2018-05-04 08:30:27 CEST

Status comment: (none) => Patch available from Ubuntu

Comment 2 David Walser 2019-01-01 04:17:38 CET
Fix was included in 1.16.0 upstream, which was uploaded to Cauldron by tv.

Whiteboard: MGA6TOO => (none)
CC: (none) => thierry.vignaud
Version: Cauldron => 6

Comment 3 David Walser 2019-01-01 21:28:37 CET
It turns out I already fixed this a year ago.

*** This bug has been marked as a duplicate of bug 22241 ***

Resolution: (none) => DUPLICATE
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.