Bugzilla – Bug 859835
VUL-1: CVE-2014-1624: python-xdg: TOCTOU race condition in get_runtime_dir() when strict=False
Last modified: 2020-05-12 17:40:22 UTC
rh#1056338 CVE-2014-1624 References: https://bugzilla.redhat.com/show_bug.cgi?id=1056338
bugbot adjusting priority
setting VUL-1
Fix has been submitted to https://build.suse.de/request/show/200002. Assign back to security team.
SUSE-SU-2019:2719-1: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 859835 CVE References: CVE-2014-1624 Sources used: SUSE Linux Enterprise Server 12-SP4 (src): python-xdg-0.25-9.3.1 SUSE Linux Enterprise Desktop 12-SP4 (src): python-xdg-0.25-9.3.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
SUSE-SU-2019:2719-2: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 859835 CVE References: CVE-2014-1624 Sources used: SUSE Linux Enterprise Server 12-SP5 (src): python-xdg-0.25-9.3.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Done