Summary: | <net-im/prosody-0.9.14: insufficient stream header validation (CVE-2018-10847) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Kristian Fiskerstrand (RETIRED) <k_f> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | klausman, rafaelmartins, zx2c4 |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://www.openwall.com/lists/oss-security/2018/05/31/2 | ||
Whiteboard: | B4 [noglsa cve] | ||
Package list: |
=net-im/prosody-0.9.14
|
Runtime testing required: | --- |
Description
Kristian Fiskerstrand (RETIRED)
2018-05-31 19:47:58 UTC
prosody-0.10.2.ebuild and prosody-0.9.14.ebuild are in the tree, adding arches. Arches, please test and mark stable: =net-im/prosody-0.9.14 amd64 stable x86 stable arm stable, all arches done. @maintainer(s), please clean vulnerable. (In reply to Aaron Bauman from comment #5) > @maintainer(s), please clean vulnerable. Done. (In reply to Tobias Klausmann from comment #6) > (In reply to Aaron Bauman from comment #5) > > @maintainer(s), please clean vulnerable. > > Done. Fastest cleanup ever! Thanks, Tobias. |