Updated file packages fix a security vulnerability
Publication date: 24 Jun 2018Modification date: 24 Jun 2018
Type: security
Affected Mageia releases : 5 , 6
CVE: CVE-2018-10360
Description
The updated packages fix a security vulnerability: The do_core_note function in readelf.c in libmagic.a in file 5.33 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted ELF file. (CVE-2018-10360)
References
SRPMS
5/core
- file-5.19-10.2.mga5
6/core
- file-5.25-5.1.mga6