Changes between Initial Version and Version 1 of Ticket #17193


Ignore:
Timestamp:
10/17/2022 06:04:03 PM (2 years ago)
Author:
ken@…
Comment:

Since we use separate libksba and are already at 1.6.2, for us this is not a vulnerability fix - relinquishing the ticket.

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #17193

    • Property Owner changed from ken@… to blfs-book
    • Property Priority elevatednormal
    • Property Status assignednew
  • TabularUnified Ticket #17193 – Description

    initial v1  
    1 Noted on lwn.net, this is primarily to fix CVE-2022-3515 in libksba, further details at [https://gnupg.org/blog/20221017-pepe-left-the-ksba.html] (can be used for remote code execution via malicious S/MIME data or by a rogue webserver.
     1Noted on lwn.net, this is primarily to fix CVE-2022-3515 in libksba, further details at [https://gnupg.org/blog/20221017-pepe-left-the-ksba.html] (can be used for remote code execution via malicious S/MIME data or by a rogue webserver.  UPDATE: BLFS has libksba as a separate package and is already at 1.6.2, therefore this is not a vulnerability fix for BLFS.
    22
    33Noteworthy changes in version 2.3.8