Bug 23912 - glibc new security issue CVE-2009-5155, CVE-2018-19591, CVE-2019-9169
Summary: glibc new security issue CVE-2009-5155, CVE-2018-19591, CVE-2019-9169
Status: RESOLVED OLD
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 6
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Thomas Backlund
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on: 24279
Blocks:
  Show dependency treegraph
 
Reported: 2018-11-28 02:23 CET by David Walser
Modified: 2019-11-05 23:22 CET (History)
0 users

See Also:
Source RPM: glibc-2.28-20.mga7.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2018-11-28 02:23:23 CET
A security issue fixed upstream in glibc has been announced:
https://www.openwall.com/lists/oss-security/2018/11/27/3
Comment 1 David Walser 2018-12-25 20:38:06 CET
Fedora has issued an advisory for this on November 30:
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/BO7WHN52GFMC5F2I2232GFIPSSXWFV7G/
Comment 2 David Walser 2019-01-01 01:35:01 CET
Fixed in glibc-2.28-26.mga7 by tmb.  Not sure if Mageia 6 is affected.

Version: Cauldron => 6

David Walser 2019-02-01 17:51:44 CET

Depends on: (none) => 24279

Comment 3 David Walser 2019-05-03 21:08:22 CEST
SUSE has issued an advisory on April 30:
http://lists.suse.com/pipermail/sle-security-updates/2019-April/005411.html

CVE-2016-10739 was fixed in Bug 24279.

CVE-2019-9169 has been fixed by tmb in Cauldron.

CVE-2009-5155 has not been mentioned before.

Summary: glibc new security issue CVE-2018-19591 => glibc new security issue CVE-2009-5155, CVE-2018-19591, CVE-2019-9169

Comment 4 David Walser 2019-11-05 23:22:29 CET
Mageia 6 is EOL.

Resolution: (none) => OLD
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.