Bug 8907

Summary: [UPDATE REQUEST 2016.1] aubio 0.4.5 -> 0.4.6 + CVE-2017-17054 fix
Product: [ROSA-based products] ROSA Fresh Reporter: Giovanni Mariani <mc2374>
Component: Packages from MainAssignee: ROSA Linux Bugs <bugs>
Status: RESOLVED FIXED QA Contact: ROSA Linux Bugs <bugs>
Severity: normal    
Priority: Normal    
Version: Fresh   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Platform: --- ROSA Vulnerability identifier:
RPM Package: aubio-0.4.5-1.src.rpm ISO-related:
Bad POT generating: Upstream:
Attachments: Abi-comp

Description Giovanni Mariani 2018-04-09 18:05:30 MSK
Created attachment 4852 [details]
Abi-comp

Our actual package (0.4.5) is affected by CVE-2017-17054 (see bug #8903):
package the latest release and add an upstream fix for the issue.

Abi-compliance-checker shows that the new library is only 98% compatible with the old one
Comment 1 Giovanni Mariani 2018-04-29 21:57:57 MSK
Duplicate of bug #8908.