GNU bug report logs - #40044
BlueZ CVE-2020-0556

Previous Next

Package: guix-patches;

Reported by: Leo Famulari <leo <at> famulari.name>

Date: Thu, 12 Mar 2020 19:25:01 UTC

Severity: normal

Done: Leo Famulari <leo <at> famulari.name>

Bug is archived. No further changes may be made.

Full log


Message #14 received at 40044 <at> debbugs.gnu.org (full text, mbox):

From: Leo Famulari <leo <at> famulari.name>
To: 40044 <at> debbugs.gnu.org
Subject: Re: [PATCH] gnu: BlueZ: Update to 5.53 [security fixes].
Date: Fri, 13 Mar 2020 12:26:18 -0400
On Thu, Mar 12, 2020 at 03:29:40PM -0400, Leo Famulari wrote:
> Apparently this fixes a privilege escalation bug:
> 
> https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00352.html
> 
> * gnu/packages/linux.scm (bluez-5.53): New variable.
> (bluez)[replacement]: New field.

Intel and I were mistaken — the bug fix is not included in the 5.53
release. So this patch should be disregarded.




This bug report was last modified 5 years and 131 days ago.

Previous Next


GNU bug tracking system
Copyright (C) 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson.