Advisories ยป MGASA-2013-0351

Updated bip packages fix CVE-2013-4550

Publication date: 22 Nov 2013
Modification date: 22 Nov 2013
Type: security
Affected Mageia releases : 2 , 3
CVE: CVE-2013-4550

Description

Updated bip package fixes security vulnerability:

bip 0.8.8 and earlier contains an issue where failed SSL handshakes result
in a resource leak. A remote attacker can use this flaw to cause bip to run
out of resources, resulting in a denial of service (CVE-2013-4550).
                

References

SRPMS

2/core

3/core