Bug 14061

Summary: [CVE21] djvulibre 3.5.27 CVEs
Product: [ROSA-based products] ROSA Fresh Reporter: Vladimir Potapov <v.potapov>
Component: Packages from MainAssignee: ROSA Linux Bugs <bugs>
Status: VERIFIED FIXED QA Contact: ROSA Linux Bugs <bugs>
Severity: blocker    
Priority: Highest CC: a.proklov, e.kosachev, pastordidi
Version: AllFlags: v.potapov: qa_verified+
e.kosachev: secteam_verified+
a.proklov: published+
Target Milestone: ---   
Hardware: All   
OS: Linux   
URL: CVE-2021-3500,CVE-2021-46312,CVE-2021-46310
Whiteboard:
Platform: --- ROSA Vulnerability identifier:
RPM Package: ISO-related:
Bad POT generating: Upstream:

Description Vladimir Potapov 2023-11-29 12:30:04 MSK

    
Comment 2 Aleksandr Proklov 2023-11-30 04:33:47 MSK
Уязвимость CVE-2021-3500 у нас и так закрыта была, просто в списке не было
остальные уязвимости закрыты обновлением версии и патчами

djvulibre	3.5.28-4

https://abf.io/build_lists/4843548 х64
https://abf.io/build_lists/4843551
https://abf.io/build_lists/4843556
https://abf.io/build_lists/4843561
https://abf.io/build_lists/4843567
Comment 3 Dmitry Postnikov 2023-12-01 18:35:01 MSK
*****************************
Обновление отослано в Тестинг
Comment 4 Vladimir Potapov 2023-12-04 18:26:07 MSK
djvulibre-3.5.28-4
https://abf.io/build_lists/4843548 х64
https://abf.io/build_lists/4843551
https://abf.io/build_lists/4843556
https://abf.io/build_lists/4843561
https://abf.io/build_lists/4843567
****************************** Advisory **************************
CVEs closed by version update and patches
******************************************************************
QA Verified
Comment 5 Eduard 2024-06-03 11:20:45 MSK
*******************************************************
Secteam_verified
*******************************************************
https://abf.rosalinux.ru/advisories/ROSA-SA-2024-2428
*******************************************************