Summary: | <www-client/epiphany-3.20.7: Password manager allows HTTP sites to access passwords saved on HTTPS sites | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Pacho Ramos <pacho> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | trivial | CC: | gnome |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | B4 [noglsa] | ||
Package list: |
www-client/epiphany-3.20.7
|
Runtime testing required: | --- |
Bug Depends on: | 608958 | ||
Bug Blocks: |
Description
Pacho Ramos
2017-02-11 14:46:38 UTC
amd64/x86 stable Looks like upstream is unable to get CVE requests responded to in the future and are unhappy about it enough to not bother with CVE requesting anymore. All arches stable, moving to glsa? GLSA Vote: No @ Maintainer(s): Please cleanup and drop =www-client/epiphany-3.20.3! Pushed 3.22 ~arch update to not be affected by this, and cleaned up both oldstable 3.20.3 and the vulnerable older 3.22.x (to avoid accidentally stabilizing it or something). So cleanup is done. Tree is clean. |