-
-
Notifications
You must be signed in to change notification settings - Fork 14.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Vulnerability Roundup 36 (master) #34787
Comments
Associated vulnerability roundup for release-17.09 is #34786 |
https://nvd.nist.gov/vuln/detail/CVE-2018-6871 LibreOffice through 6.0.1 allows remote attackers to read arbitrary files via =WEBSERVICE calls in a document, which use the COM.MICROSOFT.WEBSERVICE function |
libtiff 4.0.10 is available on http://www.simplesystems.org/libtiff/ and should be updated |
libtiff update is now merged: #51105 (comment) |
It's unlikely that we fix qemu-2.11, so I'll close this ticket for now. |
AFAIK we now only have qemu-3.0.0 on both master and 18.09. |
Scanned nixos/release-combined.nix @ e860b65. Filtered out previously reported CVEs. May contain false positives.
libtasn1-4.12 (search, files)
libtiff-4.0.9 (search, files)
mupdf-1.12.0 (search, files)
qemu-2.11.0 (search, files)
Cc: @joepie91, @phanimahesh, @the-kenny, @7c6f434c, @k0001, @peterhoeg, @nh2, @LnL7, @grahamc, @adisbladis, @fpletz
Contact @ckauhaus for any questions.
The text was updated successfully, but these errors were encountered: