openSUSE has issued an advisory today (April 1): https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/U5JRSH3JEFDRI2LLKIUVXRRMZJAO5ZPH/ Mageia 8 is also affected.
Status comment: (none) => Patches available from openSUSEWhiteboard: (none) => MGA8TOO
No activity on this for years, so assigning this update globally.
Assignee: bugsquad => pkg-bugs
Hi, The code from the patch provided by openSUSE, which solves the four issues, is already in version 0.6.3. Debian also confirms version 0.6.3 fixed those CVEs. Best regards, Nico.
CC: (none) => nicolas.salguero
Thanks.
Status: NEW => RESOLVEDResolution: (none) => INVALID