Summary: | <net-misc/curl-7.54.0: --write-out out of buffer read (CVE-2017-7407) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | blueness |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.openwall.com/lists/oss-security/2017/04/04/5 | ||
Whiteboard: | A3 [glsa cve] | ||
Package list: |
net-misc/curl-7.54.1
|
Runtime testing required: | --- |
Bug Depends on: | 626776 | ||
Bug Blocks: |
Description
Agostino Sarubbo
2017-04-17 16:49:52 UTC
Fixed in v7.54.0 which is already in the repository. @ Maintainer(s): Can we start stabilization of =net-misc/curl-7.54.0? Maybe we can do bug 618356 before? @ Arches, please test and mark stable: =net-misc/curl-7.54.1 amd64 stable x86 stable Stable on alpha. ppc stable ppc64 stable ia64 stable sparc stable arm stable Arches, please finish stabilizing hppa Gentoo Security Padawan ChrisADR This issue was resolved and addressed in GLSA 201709-14 at https://security.gentoo.org/glsa/201709-14 by GLSA coordinator Aaron Bauman (b-man). |