Updated bip packages fix CVE-2013-4550
Publication date: 22 Nov 2013Modification date: 22 Nov 2013
Type: security
Affected Mageia releases : 2 , 3
CVE: CVE-2013-4550
Description
Updated bip package fixes security vulnerability: bip 0.8.8 and earlier contains an issue where failed SSL handshakes result in a resource leak. A remote attacker can use this flaw to cause bip to run out of resources, resulting in a denial of service (CVE-2013-4550).
References
SRPMS
2/core
- bip-0.8.8-5.3.mga2
3/core
- bip-0.8.8-11.1.mga3