Advisories ยป MGASA-2017-0307

Updated libice packages fix security vulnerability

Publication date: 25 Aug 2017
Modification date: 25 Aug 2017
Type: security
Affected Mageia releases : 5
CVE: CVE-2017-2626

Description

libICE depends on arc4random() to generate the session cookies, thereby
using a weak mechanism to generate entropy (CVE-2017-2626).
                

References

SRPMS

5/core