Back to bug 741606
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Tavis Ormandy | 2011-09-27 14:33:41 UTC | Severity | high | urgent |
| Ramon de C Valle | 2011-09-27 19:31:21 UTC | Version | 6.4 | unspecified |
| CC | rcvalle | |||
| Component | rpm | vulnerability | ||
| Assignee | pmatilai | security-response-team | ||
| QA Contact | qe-baseos-security | |||
| Target Milestone | rc | --- | ||
| Product | Red Hat Enterprise Linux 6 | Security Response | ||
| Ramon de C Valle | 2011-09-27 19:36:45 UTC | CC | pmatilai | |
| Ramon de C Valle | 2011-09-28 01:14:07 UTC | Blocks | 741810 | |
| Tomas Hoger | 2011-09-28 08:23:23 UTC | Summary | crash on malformed header (headerLoad, invlid off) | rpm: crash on malformed header (headerLoad, invlid off) |
| Tavis Ormandy | 2011-09-28 09:49:53 UTC | Component | vulnerability | task |
| devzero2000 | 2011-09-28 09:56:29 UTC | CC | pinto.elia | |
| Ramon de C Valle | 2011-09-28 11:42:39 UTC | Keywords | Security | |
| Summary | rpm: crash on malformed header (headerLoad, invlid off) | rpm-libs: crash on malformed header (headerLoad, invlid off) | ||
| Whiteboard | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm-libs=affected,rhel-6/rpm-libs=affected,rhel-5/rpm-libs=affected,rhel-4/rpm-libs=affected | |||
| Ramon de C Valle | 2011-09-28 11:48:29 UTC | Summary | rpm-libs: crash on malformed header (headerLoad, invlid off) | rpm: crash on malformed header (headerLoad, invlid off) |
| Whiteboard | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm-libs=affected,rhel-6/rpm-libs=affected,rhel-5/rpm-libs=affected,rhel-4/rpm-libs=affected | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm=affected,rhel-6/rpm=affected,rhel-5/rpm=affected,rhel-4/rpm=affected | ||
| Ramon de C Valle | 2011-09-28 11:50:42 UTC | Component | task | vulnerability |
| Mark J. Cox | 2011-09-28 12:01:32 UTC | CC | mjc | |
| Mark J. Cox | 2011-09-29 09:22:28 UTC | Summary | rpm: crash on malformed header (headerLoad, invlid off) | CVE-2011-3378 rpm: crashes and overflows on malformed header |
| Alias | CVE-2011-3378 | |||
| Mark J. Cox | 2011-09-29 09:28:54 UTC | Whiteboard | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm=affected,rhel-6/rpm=affected,rhel-5/rpm=affected,rhel-4/rpm=affected | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm=affected,rhel-6/rpm=affected,rhel-5/rpm=affected,rhel-4/rpm=affected,rhel-3/rpm=affected,rhel-6.0.z/rpm=affected rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected |
| Mark J. Cox | 2011-09-29 09:31:05 UTC | Depends On | 742154 | |
| Mark J. Cox | 2011-09-29 09:31:17 UTC | Depends On | 742155 | |
| Mark J. Cox | 2011-09-29 09:31:29 UTC | Depends On | 742156 | |
| Mark J. Cox | 2011-09-29 09:31:40 UTC | Depends On | 742157 | |
| Mark J. Cox | 2011-09-29 09:31:51 UTC | Depends On | 742158 | |
| Mark J. Cox | 2011-09-29 09:32:02 UTC | Depends On | 742159 | |
| Mark J. Cox | 2011-09-29 09:32:13 UTC | Depends On | 742160 | |
| Mark J. Cox | 2011-09-29 09:32:23 UTC | Depends On | 742161 | |
| Mark J. Cox | 2011-09-29 09:32:33 UTC | Depends On | 742162 | |
| Tomas Hoger | 2011-09-29 09:38:54 UTC | Whiteboard | public=20110927,reported=20110927,source=bugzilla,impact=important,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,fedora-all/rpm=affected,rhel-6/rpm=affected,rhel-5/rpm=affected,rhel-4/rpm=affected,rhel-3/rpm=affected,rhel-6.0.z/rpm=affected rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected |
| Tomas Hoger | 2011-09-29 09:39:22 UTC | Priority | unspecified | high |
| Severity | urgent | high | ||
| Karel Srot | 2011-09-29 12:40:12 UTC | CC | ksrot | |
| Petr Sklenar | 2011-09-29 15:02:31 UTC | CC | psklenar | |
| Jindrich Novy | 2011-09-29 15:03:31 UTC | Status | NEW | MODIFIED |
| CC | jnovy | |||
| Tomas Hoger | 2011-09-29 16:08:41 UTC | Status | MODIFIED | NEW |
| Vincent Danen | 2011-10-03 20:22:57 UTC | Depends On | 743103 | |
| Markus Falb | 2011-10-06 11:13:49 UTC | CC | markus.falb | |
| Rajiv Durai Pandian | 2011-11-16 13:17:48 UTC | CC | rajiv.durai | |
| Karel Srot | 2011-11-23 16:18:44 UTC | Flags | needinfo?(thoger) | |
| Jan Lieskovsky | 2011-11-23 16:33:06 UTC | Blocks | 744203 | |
| Jan Lieskovsky | 2011-11-23 16:42:29 UTC | CC | jlieskov | |
| Flags | needinfo?(thoger) | |||
| Tomas Hoger | 2012-01-24 10:00:37 UTC | Blocks | 744203 | |
| Tomas Hoger | 2012-02-29 14:16:57 UTC | Status | NEW | CLOSED |
| Resolution | --- | ERRATA | ||
| Last Closed | 2012-02-29 09:16:57 UTC | |||
| Ramon de C Valle | 2012-03-15 12:31:49 UTC | Whiteboard | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-823 |
| Ramon de C Valle | 2012-05-25 15:20:46 UTC | Whiteboard | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-823 | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-119 |
| Ramon de C Valle | 2012-07-09 17:38:04 UTC | Whiteboard | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-119 | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119 |
| Ramon de C Valle | 2013-02-28 16:42:35 UTC | Blocks | 744203 | |
| Adam Mariš | 2015-07-31 14:38:06 UTC | CC | amaris | |
| Whiteboard | impact=important,public=20110927,reported=20110927,source=bugzilla,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119 | impact=important,public=20110927,reported=20110927,source=researcher,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119 | ||
| Adam Mariš | 2016-11-08 16:11:42 UTC | CC | amaris | |
| Product Security DevOps Team | 2019-09-29 12:47:16 UTC | Whiteboard | impact=important,public=20110927,reported=20110927,source=researcher,cvss2=7.6/AV:N/AC:H/Au:N/C:C/I:C/A:C,rhel-3/rpm=affected,rhel-4/rpm=affected,rhel-5.3.z/rpm=affected,rhel-5.6.z/rpm=affected,rhel-5/rpm=affected,rhel-6.0.z/rpm=affected,rhel-6/rpm=affected,fedora-all/rpm=affected,cwe=CWE-228->CWE-119 |
Back to bug 741606