Bug 14227

Summary: [CVE 21] rzip 2.1 CVE
Product: [ROSA-based products] ROSA Fresh Reporter: Vladimir Potapov <v.potapov>
Component: Packages from MainAssignee: ROSA Linux Bugs <bugs>
Status: VERIFIED FIXED QA Contact: ROSA Linux Bugs <bugs>
Severity: critical    
Priority: Highest CC: s.matveev
Version: AllFlags: v.potapov: secteam_verified?
Target Milestone: 2021.1 Fresh R12   
Hardware: All   
OS: Linux   
URL: CVE-2017-8364
Whiteboard:
Platform: 2021.1 ROSA Vulnerability identifier:
RPM Package: ISO-related:
Bad POT generating: Upstream:

Description Vladimir Potapov 2024-01-12 11:34:03 MSK
https://nvd.nist.gov/vuln/detail/CVE-2017-8364 HIGH
Comment 1 Svyatoslav Matveev 2024-01-13 22:55:25 MSK
CVE-2017-8364 исправлено патчем.
Т.к. проект находится в репозитории contrib,
собрано и опубликовано во всех ветках.
Ссылка на коммит
https://abf.io/import/rzip/commit/4ee793efe192c2f5c7fc7814fc910e4903543169