unpushed

rubygem-ox-2.4.11-4.el7

FEDORA-EPEL-2020-d377ff167e created by valtri 4 years ago for Fedora EPEL 7

Security fix for CVE-2017-16229 (#1549442)

This update has been submitted for testing by valtri.

4 years ago

This update's test gating status has been changed to 'waiting'.

4 years ago

This update's test gating status has been changed to 'ignored'.

4 years ago

This update has been pushed to testing.

4 years ago
User Icon valtri commented & provided feedback 4 years ago

Still crashing - the patch is probably for different issue. Everything works, but for CVE-2017-16229 complete fix, another update will be needed.

(tested according to https://github.com/ohler55/ox/issues/195 )

BZ#1549441 CVE-2017-16229 rubygem-ox: Stack-based buffer over-read in sax_buf.c:read_from_str() causes crash
BZ#1549442 CVE-2017-16229 rubygem-ox: Stack-based buffer over-read in sax_buf.c:read_from_str() causes crash [epel-7]

This update has been unpushed.


Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
4 years ago
in testing
4 years ago
BZ#1549441 CVE-2017-16229 rubygem-ox: Stack-based buffer over-read in sax_buf.c:read_from_str() causes crash
0
0
BZ#1549442 CVE-2017-16229 rubygem-ox: Stack-based buffer over-read in sax_buf.c:read_from_str() causes crash [epel-7]
0
0

Automated Test Results