Bug 29445 - haproxy new security issue CVE-2021-40346
Summary: haproxy new security issue CVE-2021-40346
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal major
Target Milestone: ---
Assignee: Bruno Cornec
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2021-09-08 01:08 CEST by David Walser
Modified: 2021-09-18 02:34 CEST (History)
1 user (show)

See Also:
Source RPM: haproxy-2.4.3-1.mga9.src.rpm
CVE:
Status comment: Fixed upstream in 2.4.4


Attachments

David Walser 2021-09-08 01:08:20 CEST

Status comment: (none) => Fixed upstream in 2.4.4
CC: (none) => jani.valimaa

Comment 1 David Walser 2021-09-08 22:29:40 CEST
Debian has issued an advisory for this on September 7:
https://www.debian.org/security/2021/dsa-4968

Ubuntu has issued an advisory for this today (September 8):
https://ubuntu.com/security/notices/USN-5063-1
Comment 2 David Walser 2021-09-16 22:26:31 CEST
Fedora has issued an advisory for this today (September 16):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/A7V2IYO22LWVBGUNZWVKNTMDV4KINLFO/

Severity: normal => major

Bruno Cornec 2021-09-18 01:55:28 CEST

Status: NEW => ASSIGNED

Comment 3 Bruno Cornec 2021-09-18 01:56:27 CEST
2.4.4 pushed to cauldron
Comment 4 David Walser 2021-09-18 02:34:27 CEST
haproxy-2.4.4-1.mga9 uploaded for Cauldron by Bruno.

Status: ASSIGNED => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.