Multiple vulnerabilities in Bionic and Impish
Bug #1971185 reported by
Luís Infante da Câmara
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
spip (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Bionic |
Fix Released
|
Undecided
|
Eduardo Barretto | ||
Impish |
Fix Released
|
Undecided
|
Eduardo Barretto |
Bug Description
(The vulnerabilities in Focal and Jammy, along with other bugs, are being fixed through the Stable Release Update process in bug #1978555)
The version in Bionic is vulnerable to CVE-2020-28984, CVE-2022-26846 and CVE-2022-26847.
The version in Impish is vulnerable to CVE-2021-44118, CVE-2021-44120, CVE-2021-44122, CVE-2021-44123, CVE-2022-26846 and CVE-2022-26847.
Please backport the versions in Debian buster and bullseye.
information type: | Private Security → Public Security |
Changed in spip (Ubuntu): | |
status: | In Progress → Fix Committed |
Changed in spip (Ubuntu): | |
status: | Fix Committed → In Progress |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
summary: |
- Multiple vulnerabilities in Bionic, Focal, Impish and Jammy + Multiple vulnerabilities in Bionic and Impish |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
description: | updated |
Changed in spip (Ubuntu): | |
assignee: | Luís Cunha dos Reis Infante da Câmara (luis220413) → nobody |
status: | In Progress → Fix Released |
To post a comment you must log in.
Thanks for taking the time to report this bug and helping to make Ubuntu better. Since the package referred to in this bug is in universe or multiverse, it is community maintained. If you are able, I suggest coordinating with upstream and posting a debdiff for this issue. When a debdiff is available, members of the security team will review it and publish the package. See the following link for more information: https:/ /wiki.ubuntu. com/SecurityTea m/UpdateProcedu res