[Bug 1046462] Re: CVE-2011-4109 erroneously listed in changelog as CVE-2011-4019

LocutusOfBorg costamagnagianfranco at yahoo.it
Thu Nov 22 20:20:00 UTC 2012


Fixed in later releases, this patch has been removed in raring (and I think previous releases)
---
Ubuntu Bug Squad volunteer triager
http://wiki.ubuntu.com/BugSquad

** Changed in: openssl (Ubuntu)
       Status: New => Incomplete

** Changed in: openssl (Ubuntu)
       Status: Incomplete => Invalid

** Changed in: openssl098 (Ubuntu)
       Status: New => Invalid

** Changed in: openssl (Ubuntu)
       Status: Invalid => Confirmed

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to openssl in Ubuntu.
https://bugs.launchpad.net/bugs/1046462

Title:
  CVE-2011-4109 erroneously listed in changelog as CVE-2011-4019

Status in “openssl” package in Ubuntu:
  Confirmed
Status in “openssl098” package in Ubuntu:
  Invalid

Bug description:
  While researching repair status for CVE-2011-4109 on Ubuntu 10.04 LTS,
  found details in changelog for CVE-2011-4019, which appear consistent
  with CVE-2011-4109.  I believe that -4109 has been repaired , but has
  erroneously been added to the changelog as -4019.   -4019 pertains to
  a Cisco product.

  Changelog: https://launchpad.net/ubuntu/+source/openssl/0.9.8k-
  7ubuntu8.8

  Referred here after posting question to
  https://answers.launchpad.net/ubuntu/+source/openssl098/+question/207684

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssl/+bug/1046462/+subscriptions




More information about the foundations-bugs mailing list