libgcrypt vulnerability CVE-2017-7526

Support for security such as Firewalls and securing linux
Post Reply
danielj_co
Posts: 1
Joined: 2017/07/05 17:32:56

libgcrypt vulnerability CVE-2017-7526

Post by danielj_co » 2017/07/05 17:37:31

http://thehackernews.com/2017/07/gnupg- ... ption.html

I think RedHat as released a fix, and I know some other distros have. Centos 7 is running 1.5.3-13, and the latest, patched version is 1.7.8.

What is the best way to mitigate this? Or is there a time frame for CentOS to release an update?

User avatar
avij
Retired Moderator
Posts: 3046
Joined: 2010/12/01 19:25:52
Location: Helsinki, Finland
Contact:

Re: libgcrypt vulnerability CVE-2017-7526

Post by avij » 2017/07/05 17:46:39

https://access.redhat.com/security/cve/CVE-2017-7526 says "Will not fix". Apparently Red Hat decided that this vulnerability is not serious enough.

Post Reply