Back to bug 1388388
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Andrej Nemec | 2016-10-25 08:36:50 UTC | CC | security-response-team | |
| Andrej Nemec | 2016-10-25 08:46:05 UTC | Blocks | 1388393 | |
| Stefan Cornelius | 2016-10-28 15:46:02 UTC | Whiteboard | impact=moderate,public=no,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=new,rhel-6/curl=new,rhel-7/curl=new,jbews-3/curl=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=moderate,public=no,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected |
| Adam Mariš | 2016-11-02 08:19:39 UTC | Whiteboard | impact=moderate,public=no,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=moderate,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected |
| Adam Mariš | 2016-11-02 08:19:48 UTC | Summary | EMBARGOED CVE-2016-8623 curl: Use-after-free via shared cookies | CVE-2016-8623 curl: Use-after-free via shared cookies |
| Adam Mariš | 2016-11-02 08:19:57 UTC | Group | security, qe_staff | |
| Adam Mariš | 2016-11-02 08:25:00 UTC | Depends On | 1390894 | |
| Adam Mariš | 2016-11-02 08:25:15 UTC | Depends On | 1390895 | |
| Adam Mariš | 2016-11-02 08:25:25 UTC | Depends On | 1390896 | |
| Stefan Cornelius | 2016-11-02 10:28:12 UTC | Whiteboard | impact=moderate,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=moderate,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected |
| Stefan Cornelius | 2016-11-03 09:43:09 UTC | Whiteboard | impact=moderate,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected |
| Stefan Cornelius | 2016-11-03 09:43:22 UTC | Severity | medium | low |
| Stefan Cornelius | 2016-11-03 09:43:35 UTC | Priority | medium | low |
| Slawomir Czarko | 2016-11-03 10:59:03 UTC | CC | slawomir | |
| Huzaifa S. Sidhpurwala | 2016-12-14 06:28:35 UTC | Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=affected,rhel-7/curl=affected,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected |
| Timothy Walsh | 2017-02-03 11:44:56 UTC | CC | erik-fedora, mike, paul, rh-spice-bugs | |
| Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=affected,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | ||
| Timothy Walsh | 2017-02-03 11:50:00 UTC | CC | mturk | |
| Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected | ||
| Scott Herold | 2017-09-12 15:32:13 UTC | CC | sherold | |
| Tomas Hoger | 2018-01-11 12:14:16 UTC | CC | omajid | |
| Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=new,dotnet-1.1/rh-dotnetcore11-curl=new,dotnet-2.0/rh-dotnet20-curl=new | ||
| Doran Moppert | 2018-01-23 06:01:55 UTC | CC | sherold | |
| Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=affected,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=new,dotnet-1.1/rh-dotnetcore11-curl=new,dotnet-2.0/rh-dotnet20-curl=new | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=new,dotnet-1.1/rh-dotnetcore11-curl=new,dotnet-2.0/rh-dotnet20-curl=new | ||
| PnT Account Manager | 2018-07-18 15:04:59 UTC | CC | rbalakri | |
| errata-xmlrpc | 2018-08-16 16:08:08 UTC | Link ID | Red Hat Product Errata RHSA-2018:2486 | |
| PnT Account Manager | 2018-11-05 22:48:28 UTC | CC | ylavi | |
| Tomas Hoger | 2018-11-12 10:30:26 UTC | CC | bodavis, dbhole, hhorak, jorton, kanderso, luhliari, rwagner | |
| Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=new,dotnet-1.1/rh-dotnetcore11-curl=new,dotnet-2.0/rh-dotnet20-curl=new | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=affected,dotnet-1.1/rh-dotnetcore11-curl=affected,dotnet-2.0/rh-dotnet20-curl=affected,dotnet-2.1/rh-dotnet21-curl=affected,rhscl-3/httpd24-curl=affected | ||
| errata-xmlrpc | 2018-11-13 08:33:55 UTC | Link ID | Red Hat Product Errata RHSA-2018:3558 | |
| Gil Klein | 2019-04-14 12:34:36 UTC | CC | gklein | |
| Product Security DevOps Team | 2019-06-08 03:01:05 UTC | Status | NEW | CLOSED |
| Resolution | --- | ERRATA | ||
| Last Closed | 2019-06-08 03:01:05 UTC | |||
| Product Security DevOps Team | 2019-09-29 13:58:49 UTC | Whiteboard | impact=low,public=20161102,reported=20161019,source=distros,cvss2=4.3/AV:N/AC:M/Au:N/C:P/I:N/A:N,cvss3=3.3/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N,cwe=CWE-416,rhel-5/curl=wontfix,rhel-6/curl=wontfix,rhel-7/curl=wontfix,jbews-3/curl=defer,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/curl=affected,fedora-all/mingw-curl=affected,epel-7/mingw-curl=affected,jbcs-1/curl=affected,dotnet-1.0/rh-dotnetcore10-curl=affected,dotnet-1.1/rh-dotnetcore11-curl=affected,dotnet-2.0/rh-dotnet20-curl=affected,dotnet-2.1/rh-dotnet21-curl=affected,rhscl-3/httpd24-curl=affected |
Back to bug 1388388