[Bug 1489066] Re: xfsprogs: xfs_metadump information disclosure

Tyler Hicks tyhicks at canonical.com
Fri Aug 28 14:53:32 UTC 2015


Hi Daniel - Thanks for the bug report. We are aware of this issue and
have triaged it in our CVE tracker:

  http://people.canonical.com/~ubuntu-
security/cve/2012/CVE-2012-2150.html

We consider it to be low priority and will update xfsprogs in our stable
releases once a higher priority issue is found.

** Changed in: xfsprogs (Ubuntu)
   Importance: Undecided => Low

** Changed in: xfsprogs (Ubuntu)
       Status: New => Triaged

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to xfsprogs in Ubuntu.
https://bugs.launchpad.net/bugs/1489066

Title:
  xfsprogs: xfs_metadump information disclosure

Status in xfsprogs package in Ubuntu:
  Triaged

Bug description:
  Please see http://seclists.org/oss-sec/2015/q3/181 for details.

  Fixed upstream in version 3.2.4, see
  http://oss.sgi.com/pipermail/xfs/2015-July/042726.html

  Also fixed by that version in debian, see https://security-
  tracker.debian.org/tracker/CVE-2012-2150

  Cheers,

  Daniel

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/xfsprogs/+bug/1489066/+subscriptions



More information about the foundations-bugs mailing list