Bug 30902 - redis new security issue CVE-2022-35951
Summary: redis new security issue CVE-2022-35951
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Stig-Ørjan Smelror
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2022-09-27 00:42 CEST by David Walser
Modified: 2022-09-28 20:30 CEST (History)
0 users

See Also:
Source RPM: redis-7.0.4-1.mga9.src.rpm
CVE:
Status comment: Fixed upstream in 7.0.5


Attachments

Description David Walser 2022-09-27 00:42:46 CEST
Fedora has issued an advisory today (September 26):
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/A7INCOOFPPEAKNDBZU3TIZJPYXBULI2C/

The issue is fixed upstream in 7.0.5:
https://groups.google.com/g/redis-db/c/23rsgnLYpM0
David Walser 2022-09-27 00:43:01 CEST

Status comment: (none) => Fixed upstream in 7.0.5

Comment 1 Lewis Smith 2022-09-28 19:38:39 CEST
By pure chance, another to assign to Stig. It is not officially your baby, but you have done several recent updates.

Assignee: bugsquad => smelror

Comment 2 Stig-Ørjan Smelror 2022-09-28 20:14:02 CEST
------------------------------------------------------------------------
r1891395 | kekepower | 2022-09-22 07:49:25 +0200 (Thu, 22 Sep 2022) | 2 lines

- Update to version 7.0.5
Comment 3 David Walser 2022-09-28 20:30:26 CEST
Fixed in redis-7.0.5-1.mga9.

Resolution: (none) => FIXED
Status: NEW => RESOLVED


Note You need to log in before you can comment on or make changes to this bug.