Summary: | <net-libs/polarssl-1.1.3: Weak key generation (CVE-2012-2130) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Tim Sammut (RETIRED) <underling> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | tommy |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://polarssl.org/trac/wiki/SecurityAdvisory201201 | ||
Whiteboard: | B4 [glsa] | ||
Package list: | Runtime testing required: | --- |
Description
Tim Sammut (RETIRED)
![]() Thomas, thanks for the heads up and ack via IRC. Arches, please test and mark stable: =net-libs/polarssl-1.1.3 Target keywords : "amd64 hppa ppc ppc64 x86" amd64 ok amd64 stable ppc/ppc64 done Stable for HPPA. x86 stable old versions removed, so all should be done on ebuild side Thanks, everyone. GLSA Vote: yes. GLSA vote: yes. Added to existing GLSA request. This issue was resolved and addressed in GLSA 201310-10 at http://security.gentoo.org/glsa/glsa-201310-10.xml by GLSA coordinator Sergey Popov (pinkbyte). |