Advisories ยป MGASA-2015-0029

Updated coreutils packages fix CVE-2014-9471

Publication date: 19 Jan 2015
Modification date: 19 Jan 2015
Type: security
Affected Mageia releases : 4
CVE: CVE-2014-9471

Description

Updated coreutils packages fix security vulnerability:

Bertrand Jacquin and Fiedler Roman discovered date and touch incorrectly
handled user-supplied input. An attacker could possibly use this to cause
a denial of service or potentially execute code (CVE-2014-9471).
                

References

SRPMS

4/core