Summary: | dev-lang/mono: Padding Oracle Information Leak (CVE-2010-3332) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Tim Sammut (RETIRED) <underling> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | dotnet |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.mono-project.com/Vulnerabilities#ASP.NET_Padding_Oracle | ||
Whiteboard: | B4 [glsa] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 340045, 352808, 359651 | ||
Bug Blocks: |
Description
Tim Sammut (RETIRED)
2010-10-22 07:17:11 UTC
Mono 2.8.1 contains this fix and has been released upstream. Is it ok to go stable? I don't think mono 2.8 is ready to go stable yet :-/ Fixed packages have been stabilized via 352808 and, for ppc only, 359651. GLSA Vote: No. Vote: YES. Added to pending GLSA request. This issue was resolved and addressed in GLSA 201206-13 at http://security.gentoo.org/glsa/glsa-201206-13.xml by GLSA coordinator Tobias Heinlein (keytoaster). |