Summary: | <net-nds/389-ds-base-1.3.4.8: Information disclosure vulnerability (CVE-2014-3562) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | trivial | CC: | np-hardass, treecleaner, wes, wibrown |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
See Also: |
https://bugs.gentoo.org/show_bug.cgi?id=573262 https://bugs.gentoo.org/show_bug.cgi?id=589592 |
||
Whiteboard: | ~4 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
GLSAMaker/CVETool Bot
2015-01-11 18:16:56 UTC
Either someone volunteers for maintaining this or we treeclean this stuff: net-nds/389-ds-base app-admin/389-ds-console Someone volunteered to maintain it in bug #573262. net-nds/389-ds-base vulnerable version removed, and version bumped in commit 5a7174bf7122309eee568651fb5f3413155f9fc2. Maintainers are working on the other one, so please don't remove from the tree. Hi, We have updated 389-ds-base to 1.3.4.7. This should resolve the issue. Thanks, No vulnerable versions in tree. This bug is still referred as masking reason for a number of packages: # NP-Hardass <NP-Hardass@gentoo.org> (05 Feb 2016) # Security issues bug #536334. Under investigation by maintainer. app-admin/389-ds-console net-nds/389-admin app-admin/389-admin-console www-apps/389-dsgw Please either lastrite the packages or well... proceed with your investigation. The referenced packages are not affected by this security bug. @maintainer, the mask was left in place for your action. Neither wibrown nor myself are listed as maintainer on these remaining packages. Upstream says they are defunct. Last rite them I guess? (In reply to Wes from comment #9) > Neither wibrown nor myself are listed as maintainer on these remaining > packages. Upstream says they are defunct. Last rite them I guess? I've opened #589592 to take care of that without spamming secteam ;-). |