Summary: | <net-misc/dropbear-2024.84: terrapin vulnerability | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Christopher Fore <csfore> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | IN_PROGRESS --- | ||
Severity: | normal | CC: | ajak, embedded |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://terrapin-attack.com/ | ||
Whiteboard: | A3 [glsa?] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 933018 | ||
Bug Blocks: | 920280 |
Description
Christopher Fore
2023-12-18 23:46:22 UTC
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=ca104be35e918af32f622d4f2e0850085e36da63 commit ca104be35e918af32f622d4f2e0850085e36da63 Author: Viorel Munteanu <ceamac@gentoo.org> AuthorDate: 2024-04-06 05:52:39 +0000 Commit: Viorel Munteanu <ceamac@gentoo.org> CommitDate: 2024-04-06 05:54:50 +0000 net-misc/dropbear: add 2024.84 Make the tests non-interactive just in case. Disable the tests that fail. Closes: https://bugs.gentoo.org/732294 Bug: https://bugs.gentoo.org/920293 Signed-off-by: Viorel Munteanu <ceamac@gentoo.org> net-misc/dropbear/Manifest | 2 + net-misc/dropbear/dropbear-2024.84.ebuild | 184 +++++++++++++++++++++ .../dropbear/files/dropbear-2024.84-dbscp.patch | 20 +++ .../dropbear-2024.84-non-interactive-tests.patch | 13 ++ 4 files changed, 219 insertions(+) Here's the fix, in 2024.84 onwards: https://github.com/mkj/dropbear/commit/6e43be5c7b99dbee49dc72b6f989f29fdd7e9356 The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=58f1638414f6957ddbc2f2e7a9e3489cab5794fd commit 58f1638414f6957ddbc2f2e7a9e3489cab5794fd Author: Viorel Munteanu <ceamac@gentoo.org> AuthorDate: 2025-02-21 08:52:00 +0000 Commit: Viorel Munteanu <ceamac@gentoo.org> CommitDate: 2025-02-21 08:58:38 +0000 net-misc/dropbear: drop 2022.83-r1 Bug: https://bugs.gentoo.org/920293 Signed-off-by: Viorel Munteanu <ceamac@gentoo.org> net-misc/dropbear/Manifest | 2 - net-misc/dropbear/dropbear-2022.83-r1.ebuild | 166 --------------------- net-misc/dropbear/files/dropbear-0.46-dbscp.patch | 20 --- .../dropbear/files/dropbear-2022.82-tests.patch | 25 ---- 4 files changed, 213 deletions(-) |