Advisories ยป MGASA-2016-0310

Updated libksba packages fix security vulnerability

Publication date: 21 Sep 2016
Modification date: 21 Sep 2016
Type: security
Affected Mageia releases : 5

Description

It was found that an unproportionate amount of memory is allocated when
parsing crafted certificates in libskba, which may lead to DoS.
Moreover in libksba 1.3.4, allocated memory is uninitialized and could
potentially contain sensitive data left in freed memory block.
                

References

SRPMS

5/core