Bug 25297 - dhcp new security issue CVE-2019-6470
Summary: dhcp new security issue CVE-2019-6470
Status: RESOLVED OLD
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 6
Hardware: All Linux
Priority: Normal major
Target Milestone: ---
Assignee: Base system maintainers
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2019-08-12 20:54 CEST by David Walser
Modified: 2019-11-06 00:36 CET (History)
3 users (show)

See Also:
Source RPM: dhcp-4.3.5-1.mga6.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2019-08-12 20:54:02 CEST
RedHat has issued an advisory on August 6:
https://access.redhat.com/errata/RHSA-2019:2060

The issue is fixed upstream in 4.4.1.
Comment 1 Marja Van Waes 2019-08-14 07:47:56 CEST
Assigning to the Base System Maintainers, bexause "urpmq --requires-recursive basesystem-minimal | grep dhcp" returns both dhcp-client and dhcp-common.
CC'ing the registered maintainer and a recent (Cauldron) submitter of the package.

CC: (none) => marja11, shlomif, smelror
Assignee: bugsquad => basesystem

Comment 2 David Walser 2019-11-06 00:36:04 CET
Mageia 6 is EOL.

Resolution: (none) => OLD
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.