FS#61804 - [systemd] [Security] denial of service (CVE-2019-6454)
Attached to Project:
Arch Linux
Opened by Morten Linderud (Foxboron) - Monday, 18 February 2019, 23:47 GMT
Last edited by Levente Polyak (anthraxx) - Thursday, 21 February 2019, 13:16 GMT
Opened by Morten Linderud (Foxboron) - Monday, 18 February 2019, 23:47 GMT
Last edited by Levente Polyak (anthraxx) - Thursday, 21 February 2019, 13:16 GMT
|
Details
Summary
======= The package systemd is vulnerable to denial of service via CVE-2019-6454. Guidance ======== The PR contains the patches provided from the open-wall announcement. I assume they will land in master unmodified. One part of the patch-set is already upstream. References ========== https://security.archlinux.org/AVG-906 https://bugzilla.redhat.com/show_bug.cgi?id=1667032 https://www.openwall.com/lists/oss-security/2019/02/18/3 https://github.com/systemd/systemd/pull/11754 https://github.com/systemd/systemd/commit/612b74d32f970c43c14ad087ad086424792981b1 |
This task depends upon
Closed by Levente Polyak (anthraxx)
Thursday, 21 February 2019, 13:16 GMT
Reason for closing: Fixed
Additional comments about closing: 241.7-2
Thursday, 21 February 2019, 13:16 GMT
Reason for closing: Fixed
Additional comments about closing: 241.7-2
The PR contains the patches provided from the open-wall announcement. I assume they will land in master unmodified. One part of the patch-set is already upstream.