Activity log for bug #1881425

Date Who What changed Old value New value Message
2020-05-30 17:53:41 Ghada Khalil bug added bug
2020-05-30 17:53:50 Ghada Khalil information type Public Public Security
2020-05-30 17:54:04 Ghada Khalil cve linked 2015-2716
2020-05-30 17:54:43 Ghada Khalil tags stx.3.0 stx.4.0 stx.security
2020-05-30 17:56:35 Ghada Khalil description CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm
2020-05-30 18:24:45 Ghada Khalil description CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm Reported By: May CVE Scan
2020-05-30 18:27:37 Ghada Khalil description CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm Reported By: May CVE Scan CVE-2015-2716: : expat: Buffer overflow in the XML parser CVSSv2: 7.5 (AV:N/AC:L/Au:N/C/I/A) Description: Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amount of compressed XML data, a related issue to CVE-2015-1283. References: https://nvd.nist.gov/vuln/detail/CVE-2015-2716 https://access.redhat.com/errata/RHSA-2020:1011 https://www.mail-archive.com/centos-cr-announce@centos.org/msg05934.html The new RPMs are: expat-2.1.0-11.el7.x86_64.rpm expat-devel-2.1.0-11.el7.x86_64.rpm expat-2.1.0-11.el7.src.rpm Reported By: StarlingX May 2020 CVE Scan
2020-06-01 13:54:30 Ghada Khalil bug added subscriber Allain Legacy
2020-06-01 13:54:39 Ghada Khalil starlingx: importance Undecided High
2020-06-01 13:54:48 Ghada Khalil starlingx: status New Triaged
2020-06-04 01:46:34 Poornima Y N starlingx: assignee Poornima Y N (poornimayn)
2020-06-04 13:36:44 Ghada Khalil bug added subscriber Jim Somerville
2020-06-10 08:53:16 OpenStack Infra starlingx: status Triaged In Progress
2020-06-12 04:40:23 OpenStack Infra starlingx: status In Progress Fix Released
2020-06-28 01:52:28 Ghada Khalil tags stx.3.0 stx.4.0 stx.security in-r-stx30 stx.3.0 stx.4.0 stx.security