Summary: | <app-crypt/trousers-0.3.14-r3: Multiple vulnerabilities (CVE-2020-{24330,24331,24332}) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | John Helmert III <ajak> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | trivial | CC: | proxy-maint, salah.coronya |
Priority: | Normal | Keywords: | CC-ARCHES, PullRequest |
Version: | unspecified | Flags: | nattka:
sanity-check+
|
Hardware: | All | ||
OS: | Linux | ||
URL: | https://sourceforge.net/p/trousers/mailman/message/37015817/ | ||
See Also: | https://github.com/gentoo/gentoo/pull/17118 | ||
Whiteboard: | C4 [noglsa] | ||
Package list: |
app-crypt/trousers-0.3.14-r3
|
Runtime testing required: | --- |
Description
John Helmert III
2020-08-13 23:46:20 UTC
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=52ec8c626ac6ebec40685ef69c09a41f135b0897 commit 52ec8c626ac6ebec40685ef69c09a41f135b0897 Author: Salah Coronya <salah.coronya@gmail.com> AuthorDate: 2020-08-14 02:46:33 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2020-08-15 00:55:57 +0000 app-crypt/trousers: Add patch for CVE-2020-244{30,31,32} Bug: https://bugs.gentoo.org/737022 Package-Manager: Portage-2.3.103, Repoman-2.3.23 Signed-off-by: Salah Coronya <salah.coronya@gmail.com> Closes: https://github.com/gentoo/gentoo/pull/17118 Signed-off-by: Sam James <sam@gentoo.org> .../files/trousers-0.3.14-tcsd-fixes.patch | 58 ++++++++++++++++++ app-crypt/trousers/trousers-0.3.14-r3.ebuild | 69 ++++++++++++++++++++++ 2 files changed, 127 insertions(+) Maintainer, please let us know when ready to stable. Ready yet? Yes, go ahead. I thought I had wait before stabilzation. (In reply to Salah Coronya from comment #4) > Yes, go ahead. I thought I had wait before stabilzation. For security bugs, tell us straight away if it's ready or not. No need to wait unless a lot changed. :) arm stable x86 stable amd64 stable arm64 done ppc64 done all arches done Please cleanup. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=3840a28f931fcc82823944ab3941c69d57fcf43b commit 3840a28f931fcc82823944ab3941c69d57fcf43b Author: Sam James <sam@gentoo.org> AuthorDate: 2020-09-17 23:25:12 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2020-09-17 23:25:12 +0000 app-crypt/trousers: security cleanup Bug: https://bugs.gentoo.org/737022 Package-Manager: Portage-3.0.4, Repoman-3.0.1 Signed-off-by: Sam James <sam@gentoo.org> app-crypt/trousers/trousers-0.3.14-r2.ebuild | 68 ---------------------------- 1 file changed, 68 deletions(-) no GLSA, closing |