Bug 2257396 - Affect by CVE-2023-40889
Summary: Affect by CVE-2023-40889
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora
Classification: Fedora
Component: zbar
Version: 38
Hardware: Unspecified
OS: Linux
unspecified
urgent
Target Milestone: ---
Assignee: Gwyn Ciesla
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2024-01-09 10:36 UTC by Frank Büttner
Modified: 2024-01-18 01:45 UTC (History)
5 users (show)

Fixed In Version: zbar-0.23.93-1.fc38 zbar-0.23.93-1.fc39
Doc Type: ---
Doc Text:
Clone Of:
Environment:
Last Closed: 2024-01-18 01:25:29 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Frank Büttner 2024-01-09 10:36:46 UTC
It looks like 0.23.90 needs an update, because it will be affected by the CVE.

Reproducible: Always




https://github.com/advisories/GHSA-mhp6-jvpx-2p4m

Comment 1 Fedora Update System 2024-01-09 16:28:47 UTC
FEDORA-2024-583e4098b9 has been submitted as an update to Fedora 38. https://bodhi.fedoraproject.org/updates/FEDORA-2024-583e4098b9

Comment 2 Fedora Update System 2024-01-09 16:28:57 UTC
FEDORA-2024-73d5220ed3 has been submitted as an update to Fedora 39. https://bodhi.fedoraproject.org/updates/FEDORA-2024-73d5220ed3

Comment 3 Fedora Update System 2024-01-10 01:48:32 UTC
FEDORA-2024-73d5220ed3 has been pushed to the Fedora 39 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2024-73d5220ed3`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2024-73d5220ed3

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 4 Fedora Update System 2024-01-10 01:58:17 UTC
FEDORA-2024-583e4098b9 has been pushed to the Fedora 38 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2024-583e4098b9`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2024-583e4098b9

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 5 Fedora Update System 2024-01-18 01:25:29 UTC
FEDORA-2024-583e4098b9 has been pushed to the Fedora 38 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 6 Fedora Update System 2024-01-18 01:45:46 UTC
FEDORA-2024-73d5220ed3 has been pushed to the Fedora 39 stable repository.
If problem still persists, please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.