Debian-LTS has issued an advisory today (July 4): https://www.debian.org/lts/security/2021/dla-2702 Mageia 8 is also affected.
CC: (none) => nicolas.salgueroWhiteboard: (none) => MGA8TOOStatus comment: (none) => Patch available from upstream and Debian
This is a re-run of bug 29000, for which NicolasS did the patches; so assigning this also to you (ex CC).
Assignee: bugsquad => nicolas.salgueroCC: nicolas.salguero => (none)
Hi, I checked djvulibre-3.5.28-1.1.mga8 and I saw that the patch from Debian is already applied so I think CVE-2021-3630 is already fixed. Best regards, Nico.
Ahh, yes it's supposed to be fixed in 3.5.28. Only Mageia 7 is affected.
Whiteboard: MGA8TOO => (none)Version: Cauldron => 7Source RPM: djvulibre-3.5.28-1.1.mga8.src.rpm => djvulibre-3.5.27-5.3.mga7.src.rpmStatus: NEW => RESOLVEDResolution: (none) => OLD