Fedora has issued an advisory today (June 1): https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/GY5OR5WTS5OD67BAZEX5U2JKFSBQV5BK/ The issue is fixed upstream in 3.4.1 and 3.5: https://weechat.org/doc/security/WSA-2022-1/
Status comment: (none) => Fixed upstream in 3.4.1
Hi, Debian and upstream say that CVE only affects versions 3.2 and above: https://security-tracker.debian.org/tracker/CVE-2022-28352 https://github.com/weechat/weechat/issues/1763 https://github.com/weechat/weechat/commit/c588ee21bc8fd33678893d5c67616033281032e3 So Mageia 8 is not affected. Best regards, Nico.
CC: (none) => nicolas.salguero
Thanks.
Resolution: (none) => INVALIDStatus: NEW => RESOLVED