Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2020:0506-1

Опубликовано: 11 апр. 2020
Источник: suse-cvrf

Описание

Security update for mgetty

This update for mgetty fixes the following issues:

  • CVE-2019-1010190: Fixed a denial of service which could be caused by a local attacker in putwhitespan() (bsc#1142770).
  • Fixed a permission issue which have resulted in build failures (bsc#1168170).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.1
g3utils-1.1.37-lp151.4.3.1
mgetty-1.1.37-lp151.4.3.1
sendfax-1.1.37-lp151.4.3.1

Описание

mgetty prior to 1.2.1 is affected by: out-of-bounds read. The impact is: DoS, the program may crash if the memory is not mapped. The component is: putwhitespan() in g3/pbm2g3.c. The attack vector is: Local, the victim must open a specially crafted file. The fixed version is: 1.2.1.


Затронутые продукты
openSUSE Leap 15.1:g3utils-1.1.37-lp151.4.3.1
openSUSE Leap 15.1:mgetty-1.1.37-lp151.4.3.1
openSUSE Leap 15.1:sendfax-1.1.37-lp151.4.3.1

Ссылки