Summary: | <dev-libs/libical-3.0.0: Multiple heap over-read vulnerabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | major | CC: | asturm, slawomir.nizio |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=1350481 | ||
Whiteboard: | A2 [glsa+ cve] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 587572 | ||
Bug Blocks: |
Description
Agostino Sarubbo
2016-06-30 10:01:23 UTC
There is a libical-2.0.0 since late July, should be possible to stabilize that one now. @ Joakim: Our version in tree (dev-libs/libical-2.0.0-r1 as of today) _is_ affected. This issue was resolved and addressed in GLSA 201904-02 at https://security.gentoo.org/glsa/201904-02 by GLSA coordinator Aaron Bauman (b-man). |