#902 [firejail] CVE-2022-31214 firejail: CVE-2022-31214: local root exploit reachable via --join logic [fedora-all] | rhbz#2095070
Closed a year ago by blockerbot. Opened 2 years ago by blockerbot.

Bug details: https://bugzilla.redhat.com/show_bug.cgi?id=2095070
Information from BlockerBugs App:
2095070

Current vote summary

The votes have been last counted at 2022-09-07 23:59 UTC and the last processed comment was #comment-815837

To learn how to vote, see:
https://pagure.io/fedora-qa/blocker-review
A quick example: BetaBlocker +1 (where the tracker name is one of BetaBlocker/FinalBlocker/BetaFE/FinalFE/0Day/PreviousRelease and the vote is one of +1/0/-1)


BetaFE +1

Fixes a serious exploit and it's long overdue.

This is the explanation I wrote. For some reason, it's not included in this issue.

firejail-0.9.70-1.fc37 fixes a high severity security vulnerability for firejail, which is security software. The CVE was announced three months ago, but the maintainer is inactive and did not mitigate it. I updated the package as a provenpackager. I don't think we should delay this patch any longer. It's important that users get the fix ASAP.

I'm obviously

BetaFE +1

I'm not sure if my vote counts, though...

Metadata Update from @blockerbot:
- Issue status updated to: Closed (was: Open)

a year ago

Release F37 is no longer tracked by BlockerBugs, closing this ticket.

Login to comment on this ticket.

Metadata