Advisories ยป MGASA-2016-0152

Updated libgd packages fix CVE-2016-3074

Publication date: 26 Apr 2016
Modification date: 26 Apr 2016
Type: security
Affected Mageia releases : 5
CVE: CVE-2016-3074

Description

Updated libgd packages fix security vulnerability:

A signedness vulnerability exists in libgd 2.1.1 and earlier which may result
in a heap overflow when processing compressed gd2 data (CVE-2016-3074).
                

References

SRPMS

5/core