FS#71524 - [fail2ban] [Security] arbitrary command execution (CVE-2021-32749)
Attached to Project:
Community Packages
Opened by Jonas Witschel (diabonas) - Friday, 16 July 2021, 14:37 GMT
Last edited by Jonas Witschel (diabonas) - Monday, 09 August 2021, 16:21 GMT
Opened by Jonas Witschel (diabonas) - Friday, 16 July 2021, 14:37 GMT
Last edited by Jonas Witschel (diabonas) - Monday, 09 August 2021, 16:21 GMT
|
Details
Summary
======= The package fail2ban is vulnerable to arbitrary command execution via CVE-2021-32749. Guidance ======== Applying commit 410a6ce5c80dd981c22752da034f2529b5eee844 referenced below fixes the issue. References ========== https://security.archlinux.org/AVG-2169 https://github.com/fail2ban/fail2ban/security/advisories/GHSA-m985-3f3v-cwmm https://github.com/fail2ban/fail2ban/commit/410a6ce5c80dd981c22752da034f2529b5eee844 |
This task depends upon
Closed by Jonas Witschel (diabonas)
Monday, 09 August 2021, 16:21 GMT
Reason for closing: Fixed
Additional comments about closing: fail2ban 0.11.2-2 in [community-testing]
Monday, 09 August 2021, 16:21 GMT
Reason for closing: Fixed
Additional comments about closing: fail2ban 0.11.2-2 in [community-testing]