Apache has issued an advisory on May 21: http://openwall.com/lists/oss-security/2018/05/21/6 The issue is fixed upstream in 3.4.10. Mageia 5 and Mageia 6 are also affected.
Whiteboard: (none) => MGA6TOO
Debian has issued an advisory for this on June 1: https://www.debian.org/security/2018/dsa-4214
Status comment: (none) => Patch available from Debian
Apache has issued an advisory today (May 20): https://www.openwall.com/lists/oss-security/2019/05/20/1 The issue is fixed upstream in 3.4.14. Mageia 6 is also affected.
Summary: zookeeper new security issue CVE-2018-8012 => zookeeper new security issues CVE-2018-8012 and CVE-2019-0201
Whiteboard: MGA6TOO => MGA7TOO, MGA6TOO
Debian has issued an advisory for the latter issue on June 12: https://www.debian.org/security/2019/dsa-4461
Status comment: Patch available from Debian => Patches available from Debian
SUSE has issued an advisory on April 22: http://lists.suse.com/pipermail/sle-security-updates/2020-April/006723.html The CVE-2017-5637 issue is fixed upstream in 3.4.10.
Summary: zookeeper new security issues CVE-2018-8012 and CVE-2019-0201 => zookeeper new security issues CVE-2017-5637, CVE-2018-8012, and CVE-2019-0201
Whiteboard: MGA7TOO, MGA6TOO => MGA7TOOCC: (none) => mageia
to test CVE-2017-5637 https://vulners.com/exploitdb/EDB-ID:41277 from: https://issues.apache.org/jira/browse/ZOOKEEPER-2693
CVE: (none) => CVE-2018-8012 CVE-2019-0201Summary: zookeeper new security issues CVE-2017-5637, CVE-2018-8012, and CVE-2019-0201 => zookeeper new security issues CVE-2018-8012, and CVE-2019-0201
patch for CVE-2018-8012 added on svn
CVE-2017-5637 is fixed in 3.4.89, see Comment 4. Either we need to add the patch or update.
CVE: CVE-2018-8012 CVE-2019-0201 => CVE-2017-5637 CVE-2018-8012 CVE-2019-0201Summary: zookeeper new security issues CVE-2018-8012, and CVE-2019-0201 => zookeeper new security issues CVE-2017-5637, CVE-2018-8012, and CVE-2019-0201
# Debian patches: Patch100: zookeeper-3.4.9-CVE-2017-5637.patch this is already on mga7 and mga8 in svn since a long time. ( before mga7 Mass Rebuild ) ( this was to fix https://bugs.mageia.org/show_bug.cgi?id=21014 )
Nice, not sure how I missed that.
Summary: zookeeper new security issues CVE-2017-5637, CVE-2018-8012, and CVE-2019-0201 => zookeeper new security issues CVE-2018-8012 and CVE-2019-0201CVE: CVE-2017-5637 CVE-2018-8012 CVE-2019-0201 => CVE-2018-8012 CVE-2019-0201
Not available on mageia 8 anymore
Version: Cauldron => 7Whiteboard: MGA7TOO => (none)
https://blog.mageia.org/en/2021/06/08/mageia-7-will-reach-end-of-support-on-30th-of-june-the-king-is-dead-long-live-the-king/
Status: NEW => RESOLVEDResolution: (none) => OLD