Advisories ยป MGASA-2020-0109

Updated hiredis packages fix security vulnerability

Publication date: 29 Feb 2020
Modification date: 29 Feb 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2019-XXXX

Description

Updated hiredis packages fix security vulnerability:

async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a
NULL pointer dereference because malloc return values are unchecked
(CVE-2020-7105).
                

References

SRPMS

7/core