Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

1.7.1 fixes critical CVEs #26

Open
wohali opened this issue Nov 27, 2017 · 2 comments
Open

1.7.1 fixes critical CVEs #26

wohali opened this issue Nov 27, 2017 · 2 comments

Comments

@wohali
Copy link

wohali commented Nov 27, 2017

Hi Wendall,

Thanks again for all your work in maintaining the RPMs for CouchDB 1.x.

We had 2 critical CVEs hit recently. These have been fixed in CouchDB 1.7.1 (perhaps our last 1.x release!) and Peter Lemenkov then fixed the Fedora 26/27/28 RPMs:

https://bugzilla.redhat.com/show_bug.cgi?id=1516981

Is there any chance of updating your repo to function against 1.7.1 as well?

@kika
Copy link

kika commented Mar 4, 2018

@wohali as a stopgap solution https://github.com/kika/couchdb17-centos7
I've rebuilt the RPMs from Fedora 28 and the rest could be taken from Erlang-Solutions repository.

@wohali
Copy link
Author

wohali commented Mar 4, 2018

@wohali Thanks

/cc @janl RPMs for Centos 7, 1.7.1, see https://github.com/kika/couchdb17-centos7/releases

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants