Bug 29300 - fastjar new security issue CVE-2010-2322
Summary: fastjar new security issue CVE-2010-2322
Status: RESOLVED INVALID
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Java Stack Maintainers
QA Contact: Sec team
URL:
Whiteboard: MGA8TOO
Keywords:
Depends on:
Blocks:
 
Reported: 2021-07-29 23:53 CEST by David Walser
Modified: 2021-07-30 10:11 CEST (History)
1 user (show)

See Also:
Source RPM: fastjar-0.98-13.mga8.src.rpm
CVE:
Status comment: Patch available from openSUSE


Attachments

Description David Walser 2021-07-29 23:53:50 CEST
openSUSE has issued an advisory today (July 29):
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/OHWHBBR2CBRHE7HR6PAPJLGHP3QCHYHS/

Mageia 8 is also affected.
David Walser 2021-07-29 23:54:16 CEST

Status comment: (none) => Patch available from openSUSE
Whiteboard: (none) => MGA8TOO

Comment 1 Nicolas Lécureuil 2021-07-30 10:11:01 CEST
we already have the Fix. The only change here is to rename the patch and add references  to the bug.

https://build.opensuse.org/package/rdiff/openSUSE:Factory/fastjar?linkrev=base&
rev=21

Status: NEW => RESOLVED
CC: (none) => mageia
Resolution: (none) => INVALID


Note You need to log in before you can comment on or make changes to this bug.