Advisories ยป MGASA-2021-0382

Updated quassel packages fix a security vulnerability

Publication date: 27 Jul 2021
Modification date: 27 Jul 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-34825

Description

Quassel through 0.13.1, when --require-ssl is enabled, launches without SSL or
TLS support if a usable X.509 certificate is not found on the local system
(CVE-2021-34825).

Also, the default IRC server has been changed from Freenode to Libera Chat, as
upstream has moved their #quassel channel there.
                

References

SRPMS

8/core