Bug 24283 - qtbase5 new security issue CVE-2018-19870 and CVE-2018-19872
Summary: qtbase5 new security issue CVE-2018-19870 and CVE-2018-19872
Status: RESOLVED OLD
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 6
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: KDE maintainers
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2019-02-01 19:24 CET by David Walser
Modified: 2019-11-03 02:53 CET (History)
0 users

See Also:
Source RPM: qtbase5-5.9.4-1.2.mga6.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2019-02-01 19:24:28 CET
Debian has issued an advisory on January 28:
https://www.debian.org/security/2019/dsa-4374

We fixed the other two issues in Bug 24081.
Comment 2 David Walser 2019-04-25 00:30:21 CEST
SUSE has issued an advisory on April 10:
http://lists.suse.com/pipermail/sle-security-updates/2019-April/005321.html

It includes a fix for CVE-2018-19872, also from 5.11.3.

Summary: qtbase5 new security issue CVE-2018-19870 => qtbase5 new security issue CVE-2018-19870 and CVE-2018-19872

Comment 3 David Walser 2019-05-03 19:57:18 CEST
openSUSE has issued an advisory for this on April 18:
https://lists.opensuse.org/opensuse-updates/2019-04/msg00152.html
Comment 4 David Walser 2019-11-03 02:53:17 CET
Mageia 6 is EOL.

Status: NEW => RESOLVED
Resolution: (none) => OLD


Note You need to log in before you can comment on or make changes to this bug.