Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability roundup 40 (master) #39365

Closed
1 of 9 tasks
ckauhaus opened this issue Apr 23, 2018 · 3 comments
Closed
1 of 9 tasks

Vulnerability roundup 40 (master) #39365

ckauhaus opened this issue Apr 23, 2018 · 3 comments
Labels
1.severity: security Issues which raise a security issue, or PRs that fix one

Comments

@ckauhaus
Copy link
Contributor

ckauhaus commented Apr 23, 2018

Scanned nixos/release-combined.nix @ 255a833. Filtered out previously reported CVEs. May contain false positives.

binutils-2.30 (search, files)

exiv2-0.26 (search, files)

Cc: @joepie91, @phanimahesh, @the-kenny, @7c6f434c, @k0001, @peterhoeg, @nh2, @LnL7, @grahamc, @adisbladis, @fpletz

Contact @ckauhaus for any questions.

@primeos primeos added the 1.severity: security Issues which raise a security issue, or PRs that fix one label Apr 23, 2018
@Anton-Latukha
Copy link
Contributor

Anton-Latukha commented Apr 26, 2018

"Patch form, policy, management" discussion happening: #39392
The major point of discussion is CVE patches.
I think people doing security work would be interested to look at it.

@ckauhaus
Copy link
Contributor Author

@vcunat would you mind going through the list of CVEs and mark those fixed in exiv2-0.26.2018.06.09? Thx

@ckauhaus
Copy link
Contributor Author

18.09 is EOL

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
1.severity: security Issues which raise a security issue, or PRs that fix one
Projects
None yet
Development

No branches or pull requests

3 participants