Back to bug 1312219
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Huzaifa S. Sidhpurwala | 2016-02-26 06:44:51 UTC | CC | security-response-team | |
| Red Hat Bugzilla | 2016-02-26 06:44:51 UTC | Doc Type | --- | Bug Fix |
| Huzaifa S. Sidhpurwala | 2016-02-26 06:44:57 UTC | Blocks | 1301847 | |
| Huzaifa S. Sidhpurwala | 2016-02-29 07:22:47 UTC | Whiteboard | impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-6/openssl=affected,rhel-7/openssl=affected,fedora-all/openssl=affected | impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new |
| Huzaifa S. Sidhpurwala | 2016-02-29 07:23:14 UTC | Whiteboard | impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=new,rhel-5/openssl097a=new,rhel-6/openssl=new,rhel-6/openssl098e=new,rhel-7/openssl=new,rhel-7/openssl098e=new,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new |
| Huzaifa S. Sidhpurwala | 2016-02-29 08:40:50 UTC | Doc Text | Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which pass large amounts of untrusted data through these functions, could crash or potentially execute code with the permission of the user running such an application. | |
| Mark J. Cox | 2016-02-29 11:56:42 UTC | CC | mjc | |
| Martin Prpič | 2016-02-29 12:01:22 UTC | Whiteboard | impact=low,public=no,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160227,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new |
| Martin Prpič | 2016-02-29 12:01:25 UTC | Summary | EMBARGOED CVE-2016-0799 OpenSSL: Fix memory issues in BIO_*printf functions | CVE-2016-0799 OpenSSL: Fix memory issues in BIO_*printf functions |
| Martin Prpič | 2016-02-29 12:01:27 UTC | Group | security, qe_staff | |
| Martin Prpič | 2016-02-29 12:01:58 UTC | Depends On | 1312856 | |
| Martin Prpič | 2016-02-29 12:02:05 UTC | Depends On | 1312857 | |
| Martin Prpič | 2016-02-29 12:02:16 UTC | Depends On | 1312858 | |
| Martin Prpič | 2016-02-29 12:14:20 UTC | Whiteboard | impact=low,public=20160227,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new |
| Slawomir Czarko | 2016-03-01 08:47:46 UTC | CC | slawomir | |
| Norman Sardella | 2016-03-01 15:30:12 UTC | CC | sardella | |
| Tomas Hoger | 2016-03-01 22:56:48 UTC | Fixed In Version | openssl 1.0.1s, openssl 1.0.2g | |
| Yasuhiro Ozone | 2016-03-03 00:18:55 UTC | CC | yozone | |
| Huzaifa S. Sidhpurwala | 2016-03-14 05:06:24 UTC | Blocks | 1314768 | |
| Huzaifa S. Sidhpurwala | 2016-03-14 05:07:25 UTC | Blocks | 1301847 | |
| Summer Long | 2016-03-15 22:39:01 UTC | CC | slong | |
| Doc Text | Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which pass large amounts of untrusted data through these functions, could crash or potentially execute code with the permission of the user running such an application. | Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application. | ||
| Muhammad Azhar Shaikh | 2016-03-17 13:35:32 UTC | CC | mdshaikh | |
| Huzaifa S. Sidhpurwala | 2016-03-25 05:39:13 UTC | CC | ykawada | |
| Flags | needinfo?(security-response-team) | |||
| Flags | needinfo?(security-response-team) | |||
| Huzaifa S. Sidhpurwala | 2016-03-29 09:07:00 UTC | Depends On | 1321841 | |
| Huzaifa S. Sidhpurwala | 2016-03-29 09:07:06 UTC | Depends On | 1321842 | |
| Birol Bilgin | 2016-04-25 12:50:28 UTC | CC | bbilgin | |
| Tomas Hoger | 2016-04-28 20:27:28 UTC | Depends On | 1331569 | |
| Tomas Hoger | 2016-04-29 20:54:41 UTC | Depends On | 1331865 | |
| Tomas Hoger | 2016-04-29 20:54:50 UTC | Depends On | 1331866 | |
| Martin Prpič | 2016-05-03 14:50:23 UTC | Doc Text | Several flaws were found in the way BIO_*printf functions were internally implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application. | Several flaws were found in the way BIO_*printf functions were implemented in OpenSSL. Applications which passed large amounts of untrusted data through these functions could crash or potentially execute code with the permissions of the user running such an application. |
| Huzaifa S. Sidhpurwala | 2016-05-11 03:17:23 UTC | Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=affected,rhel-5/openssl097a=affected,rhel-6/openssl=affected,rhel-6/openssl098e=affected,rhel-7/openssl=affected,rhel-7/openssl098e=affected,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new |
| Timothy Walsh | 2016-05-17 11:15:05 UTC | CC | jkeilson | |
| Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,jbcs-1/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | ||
| Timothy Walsh | 2016-05-17 11:15:11 UTC | CC | cdewolf, csutherl, jawilson, jclere, mbabacek, twalsh | |
| Timothy Walsh | 2016-05-17 11:30:32 UTC | Link ID | JBoss Issue Tracker JCSP-92 | |
| Timothy Walsh | 2016-05-17 11:37:05 UTC | Link ID | JBoss Issue Tracker JCSP-92 | |
| Timothy Walsh | 2016-05-24 04:52:45 UTC | Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,jbcs-1/openssl=affected,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbews-1/openssl=new,jbews-2/openssl=new,jbews-3/openssl=new,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new |
| Martin Prpič | 2016-08-15 08:28:34 UTC | Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected |
| Martin Prpič | 2016-08-15 08:32:12 UTC | Depends On | 1366994 | |
| Timothy Walsh | 2017-01-19 06:55:25 UTC | Blocks | 1395463 | |
| Timothy Walsh | 2017-04-03 07:19:30 UTC | CC | bmcclain, dblechte, dougsland, eedri, erik-fedora, gklein, gzaronik, ktietz, lgao, lsurette, marcandre.lureau, mgoldboi, michal.skrivanek, mturk, myarboro, pstehlik, redhat-bugzilla, rjones, sherold, srevivo, weli, ycui, ydary, ykaul | |
| Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=new,jbews-2/openssl=wontfix,jbews-3/openssl=affected,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=wontfix,jbews-2/openssl=wontfix,jbews-3/openssl=defer,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected | ||
| Scott Herold | 2017-09-12 15:35:33 UTC | CC | sherold | |
| Šimon Lukašík | 2017-11-14 13:31:21 UTC | CC | slukasik | |
| PnT Account Manager | 2018-08-27 21:30:20 UTC | CC | mdshaikh | |
| PnT Account Manager | 2018-11-05 22:43:05 UTC | CC | ylavi | |
| PnT Account Manager | 2018-12-03 22:31:21 UTC | CC | bbilgin | |
| Gil Klein | 2019-04-14 12:36:03 UTC | CC | gklein | |
| Product Security DevOps Team | 2019-06-08 02:48:53 UTC | Status | NEW | CLOSED |
| Resolution | --- | ERRATA | ||
| Last Closed | 2019-06-08 02:48:53 UTC | |||
| Product Security DevOps Team | 2019-09-29 13:45:06 UTC | Whiteboard | impact=low,public=20160226,reported=20160226,source=upstream,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,rhel-5/openssl=wontfix,rhel-5/openssl097a=wontfix,rhel-6/openssl=affected,rhel-6/openssl098e=wontfix,rhel-7/openssl=affected,rhel-7/openssl098e=wontfix,fedora-all/openssl=affected,fedora-all/mingw-openssl=affected,epel-5/openssl101e=affected,jbcs-1/openssl=affected,jbews-1/openssl=wontfix,jbews-2/openssl=wontfix,jbews-3/openssl=defer,rhev-m-3/rhev-hypervisor=new,rhel-6.7.z/openssl=affected | |
| Stanislav Ochotnicky | 2020-12-15 08:51:02 UTC | See Also | https://issues.redhat.com/browse/JBCS-94 |
Back to bug 1312219