GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Wed May 26, 2021 9:26 pm Post subject: [ GLSA 202105-15 ] Prosŏdy IM |
|
|
Gentoo Linux Security Advisory
Title: Prosŏdy IM: Multiple vulnerabilities (GLSA 202105-15)
Severity: low
Exploitable: remote
Date: 2021-05-26
Bug(s): #771144, #789969
ID: 202105-15
Synopsis
Multiple vulnerabilities have been found in Prosŏdy IM, the worst
of which could result in a Denial of Service condition.
Background
Prosŏdy IM is a modern XMPP communication server. It aims to be easy to
set up and configure, and efficient with system resources.
Affected Packages
Package: net-im/prosody
Vulnerable: < 0.11.9
Unaffected: >= 0.11.9
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in Prosŏdy IM. Please
review the CVE identifiers referenced below for details.
Impact
Please review the referenced CVE identifiers for details.
Workaround
There is no known workaround at this time.
Resolution
All Prosŏdy IM users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=net-im/prosody-0.11.9"
|
References
CVE-2021-32917
CVE-2021-32918
CVE-2021-32919
CVE-2021-32920
CVE-2021-32921 |
|