Bug 14216

Summary: [CVE 21] opusfile 0.12 CVE
Product: [ROSA-based products] ROSA Fresh Reporter: Vladimir Potapov <v.potapov>
Component: Packages from MainAssignee: ROSA Linux Bugs <bugs>
Status: VERIFIED FIXED QA Contact: ROSA Linux Bugs <bugs>
Severity: normal    
Priority: Normal CC: a.proklov, i.gaptrakhmanov
Version: AllFlags: v.potapov: qa_verified+
v.potapov: secteam_verified?
a.proklov: published+
Target Milestone: ---   
Hardware: All   
OS: Linux   
URL: CVE-2022-47021
Whiteboard:
Platform: --- ROSA Vulnerability identifier:
RPM Package: ISO-related:
Bad POT generating: Upstream:

Description Vladimir Potapov 2024-01-11 10:29:45 MSK
https://nvd.nist.gov/vuln/detail/CVE-2022-47021 exploit!
Comment 2 Vladimir Potapov 2024-01-15 17:24:42 MSK
(In reply to ilfat from comment #1)
> ******** QA ADVISORY ********
> 
> CVE closed by a patch
> 
> opusfile 0.12-3
> 
> # rosa2021.1
> https://abf.rosalinux.ru/build_lists/4953082 i686
> https://abf.rosalinux.ru/build_lists/4953083 x86_64
> https://abf.rosalinux.ru/build_lists/4953084 aarch64
> https://abf.rosalinux.ru/build_lists/4953085 riscv64
> https://abf.rosalinux.ru/build_lists/4953086 e2kv4
********************************************************
The update sent to testings


> 
> # rosa2021.15
> https://abf.rosalinux.ru/build_lists/4953087 i686
> https://abf.rosalinux.ru/build_lists/4953088 x86_64
> https://abf.rosalinux.ru/build_lists/4953089 aarch64
> https://abf.rosalinux.ru/build_lists/4953090 e2kv4
******************************
Published
Comment 3 Vladimir Potapov 2024-01-23 15:42:09 MSK
opusfile-0.12-3
https://abf.rosalinux.ru/build_lists/4953082 i686
https://abf.rosalinux.ru/build_lists/4953083 x86_64
https://abf.rosalinux.ru/build_lists/4953084 aarch64
https://abf.rosalinux.ru/build_lists/4953085 riscv64
https://abf.rosalinux.ru/build_lists/4953086 e2kv
*************************** Advisory *****************************
CVE closed by a patch
******************************************************************
QA Verified