Advisories ยป MGASA-2018-0113

Updated libvpx packages fix security vulnerability

Publication date: 06 Feb 2018
Modification date: 06 Feb 2018
Type: security
Affected Mageia releases : 5 , 6
CVE: CVE-2017-7544

Description

An out-of-bounds heap read vulnerability in exif_data_save_data_entry
function in libexif/exif-data.c caused by improper length computation of
the allocated data of an ExifMnote entry which can cause denial-of-service
or possibly information disclosure (CVE-2017-7544).
                

References

SRPMS

6/core

5/core