Bug 31791 - pcre unfixed security issue CVE-2017-11164
Summary: pcre unfixed security issue CVE-2017-11164
Status: NEW
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: release_blocker normal
Target Milestone: Mageia 9
Assignee: All Packagers
QA Contact: Sec team
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2023-04-13 17:02 CEST by David Walser
Modified: 2023-04-13 21:31 CEST (History)
0 users

See Also:
Source RPM: pcre-8.45-3.mga9.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2023-04-13 17:02:08 CEST
A note about an unfixed old security issue in pcre was sent out on April 11:
https://www.openwall.com/lists/oss-security/2023/04/11/1

As noted there, we should link any remaining packages that are still linked to old pcre to pcre2 instead.  If anything still hasn't been ported, it should probably be dropped.
David Walser 2023-04-13 17:02:23 CEST

Priority: Normal => release_blocker
Target Milestone: --- => Mageia 9

Comment 1 Lewis Smith 2023-04-13 21:31:17 CEST
Assigning this gmlobally in the absence of one obvious packager.

Assignee: bugsquad => pkg-bugs


Note You need to log in before you can comment on or make changes to this bug.