Bug 28196 - python-autobahn new security issue CVE-2020-35678
Summary: python-autobahn new security issue CVE-2020-35678
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: All Packagers
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2021-01-22 19:05 CET by David Walser
Modified: 2021-01-22 23:03 CET (History)
2 users (show)

See Also:
Source RPM: python-autobahn-19.11.1-2.mga8.src.rpm
CVE:
Status comment: Fixed upstream in 20.12.3


Attachments

Description David Walser 2021-01-22 19:05:15 CET
openSUSE has issued an advisory on January 21:
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/HC22UZIJVKS65SOAIGLLU6XWHC73XYOM/

The issue is fixed upstream in 20.12.3.

This package only exists in Cauldron...I'm not sure if it's needed.
David Walser 2021-01-22 19:05:26 CET

Status comment: (none) => Fixed upstream in 20.12.3

Comment 1 Lewis Smith 2021-01-22 21:04:07 CET
No fixed maintainer, so assigning globally. CC'ing Shlomi who did 19.11.1; and
since, 20.7.1

Source RPM: python3-autobahn-19.11.1-2.mga8.src.rpm => python-autobahn-19.11.1-2.mga8.src.rpm
Assignee: bugsquad => pkg-bugs
CC: (none) => shlomif

Comment 2 Nicolas Lécureuil 2021-01-22 23:03:50 CET
fixed in cauldron.

CC: (none) => mageia
Status: NEW => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.