[Bug 2068598] New: CVE-2022-24613 metadata-extractor2: metadata-extractor: Various uncaught exceptions while parsing a specially crafted JPEG file [epel-7]
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2068598
Bug ID: 2068598
Summary: CVE-2022-24613 metadata-extractor2:
metadata-extractor: Various uncaught exceptions while
parsing a specially crafted JPEG file [epel-7]
Product: Fedora EPEL
Version: epel7
Status: NEW
Component: metadata-extractor2
Keywords: Security, SecurityTracking
Severity: low
Priority: low
Assignee: cedric.olivier(a)free.fr
Reporter: pdelbell(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: cedric.olivier(a)free.fr,
extras-orphan(a)fedoraproject.org,
java-sig-commits(a)lists.fedoraproject.org,
puntogil(a)libero.it
Target Milestone: ---
Classification: Fedora
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2068598
1 year
[Bug 2068597] New: CVE-2022-24614 metadata-extractor2: metadata-extractor: Out-of-memory when reading a specially crafted JPEG file [epel-7]
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2068597
Bug ID: 2068597
Summary: CVE-2022-24614 metadata-extractor2:
metadata-extractor: Out-of-memory when reading a
specially crafted JPEG file [epel-7]
Product: Fedora EPEL
Version: epel7
Status: NEW
Component: metadata-extractor2
Keywords: Security, SecurityTracking
Severity: low
Priority: low
Assignee: cedric.olivier(a)free.fr
Reporter: pdelbell(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: cedric.olivier(a)free.fr,
extras-orphan(a)fedoraproject.org,
java-sig-commits(a)lists.fedoraproject.org,
puntogil(a)libero.it
Target Milestone: ---
Classification: Fedora
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-7.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2068597
1 year
[Bug 2064615] New: Please provide maven-antrun-plugin for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064615
Bug ID: 2064615
Summary: Please provide maven-antrun-plugin for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: maven-antrun-plugin
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: akurtako(a)redhat.com,
java-sig-commits(a)lists.fedoraproject.org,
mizdebsk(a)redhat.com
Target Milestone: ---
Classification: Fedora
Can you please provide maven-antrun-plugin for EPEL-9?
The Rawhide version depends on these packages:
- xmlunit - 2064587
- maven-parent - 2064608
Thank you and best wishes,
Stefan
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064615
1 year
[Bug 2064601] New: Please provide plexus-containers for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064601
Bug ID: 2064601
Summary: Please provide plexus-containers for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: plexus-containers
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: dbhole(a)redhat.com, fnasser(a)redhat.com,
java-sig-commits(a)lists.fedoraproject.org,
mizdebsk(a)redhat.com, yyang(a)redhat.com
Target Milestone: ---
Classification: Fedora
Can you please provide plexus-containers for EPEL-9?
Rawhide build is dependent on
- plexus-pom 2064597
- jdom2 2064595
- maven-local-openjdk8
I guess there needs to be some update to work on the EPEL 9 jdk (v11)
Thank you very much for your efforts!
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064601
1 year
[Bug 2064608] New: Please provide maven-parent for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064608
Bug ID: 2064608
Summary: Please provide maven-parent for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: maven-parent
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: java-sig-commits(a)lists.fedoraproject.org,
mizdebsk(a)redhat.com
Target Milestone: ---
Classification: Fedora
Can you please provide maven-parent for EPEL-9?
This one is a bit tricky as there is a circular dependency via apache-parent
and apache-resource-bundles back to maven-parent.
I would be grateful for your efforts!
Thank you and best wishes,
Stefan
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064608
1 year
[Bug 2064612] New: Please provide apache-resource-bundles for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064612
Bug ID: 2064612
Summary: Please provide apache-resource-bundles for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: apache-resource-bundles
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: java-sig-commits(a)lists.fedoraproject.org,
mefoster(a)gmail.com, mizdebsk(a)redhat.com
Target Milestone: ---
Classification: Fedora
Can you please provide apache-resource-bundles for EPEL-9?
This one is a bit tricky as there is a circular dependency via maven-parent and
apache-parent back to apache-resource-bundles.
I would be grateful for your efforts!
Thank you and best wishes,
Stefan
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064612
1 year
[Bug 2064611] New: Please provide apache-parent for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064611
Bug ID: 2064611
Summary: Please provide apache-parent for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: apache-parent
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: agrimm(a)gmail.com, ctubbsii(a)fedoraproject.org,
java-sig-commits(a)lists.fedoraproject.org,
mizdebsk(a)redhat.com
Target Milestone: ---
Classification: Fedora
Can you please provide apache-parent for EPEL-9?
This one is a bit tricky as there is a circular dependency via
apache-resource-bundles and maven-parent back to apache-parent.
I would be grateful for your efforts!
Thank you and best wishes,
Stefan
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064611
1 year
[Bug 2064597] New: Please provide plexus-pom for EPEL-9
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2064597
Bug ID: 2064597
Summary: Please provide plexus-pom for EPEL-9
Product: Fedora
Version: rawhide
Status: NEW
Component: plexus-pom
Assignee: mizdebsk(a)redhat.com
Reporter: fedoraproject.org(a)bluhm-de.com
QA Contact: extras-qa(a)fedoraproject.org
CC: java-sig-commits(a)lists.fedoraproject.org,
mizdebsk(a)redhat.com, puntogil(a)libero.it
Target Milestone: ---
Classification: Fedora
Can you please provide plexus-pom for EPEL-9?
The rawhide state seems to build already:
$ fedpkg scratch-build --target epel9
Building plexus-pom-7-5.fc37 for epel9
Created task: 84266808
Task info: https://koji.fedoraproject.org/koji/taskinfo?taskID=84266808
Watching tasks (this may be safely interrupted)...
84266808 build (epel9,
/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): free
84266808 build (epel9,
/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): free -> open
(buildvm-s390x-20.s390.fedoraproject.org)
84266831 buildSRPMFromSCM
(/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): free
84266831 buildSRPMFromSCM
(/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): free -> open
(buildvm-x86-23.iad2.fedoraproject.org)
84266924 buildArch (plexus-pom-7-5.el9.src.rpm, noarch): free
84266831 buildSRPMFromSCM
(/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): open
(buildvm-x86-23.iad2.fedoraproject.org) -> closed
1 free 1 open 1 done 0 failed
84266924 buildArch (plexus-pom-7-5.el9.src.rpm, noarch): free -> open
(buildhw-x86-01.iad2.fedoraproject.org)
84266808 build (epel9,
/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69): open
(buildvm-s390x-20.s390.fedoraproject.org) -> closed
0 free 1 open 2 done 0 failed
84266924 buildArch (plexus-pom-7-5.el9.src.rpm, noarch): open
(buildhw-x86-01.iad2.fedoraproject.org) -> closed
0 free 0 open 3 done 0 failed
84266808 build (epel9,
/rpms/plexus-pom.git:853f396f7ad43fe8c3a61c8c46a93c0575740d69) completed
successfully
Thank you and best wishes,
Stefan
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2064597
1 year