Summary: | <dev-lang/erlang-23.2.2: Invalid TLS certificate validation (CVE-2020-35733) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | IN_PROGRESS --- | ||
Severity: | minor | CC: | jpds, matthew |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://erlang.org/pipermail/erlang-questions/2021-January/100357.html | ||
Whiteboard: | B4 [glsa? cve] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 755236 | ||
Bug Blocks: | 749345 |
Description
Sam James
2021-01-17 19:53:23 UTC
Please tell us when ready to stable, expedited if possible. ping? Erlang 23.2.1 isn't sufficient to fix this bug. Unable to check for sanity:
> no match for package: dev-lang/erlang-23.2.2
Stabilization was done in bug 773016. Please cleanup. Ping. Please cleanup. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=f06f1d7a8d16f0c9730128c56f2a8e22e88b42a3 commit f06f1d7a8d16f0c9730128c56f2a8e22e88b42a3 Author: Sergei Trofimovich <slyfox@gentoo.org> AuthorDate: 2021-04-28 18:16:02 +0000 Commit: Sergei Trofimovich <slyfox@gentoo.org> CommitDate: 2021-04-28 18:16:23 +0000 dev-lang/erlang: drop old Bug: https://bugs.gentoo.org/749345 Bug: https://bugs.gentoo.org/765796 Package-Manager: Portage-3.0.18, Repoman-3.0.3 Signed-off-by: Sergei Trofimovich <slyfox@gentoo.org> dev-lang/erlang/Manifest | 3 - dev-lang/erlang/erlang-23.0.4.ebuild | 158 ----------------------------------- 2 files changed, 161 deletions(-) GLSA request filed. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Affected versions no longer in tree. |