Advisories ยป MGASA-2019-0312

Updated libsoup packages fix security vulnerability

Publication date: 02 Nov 2019
Modification date: 02 Nov 2019
Type: security
Affected Mageia releases : 7
CVE: CVE-2019-17266

Description

Updated libsoup package fixes security vulnerability:

It was discovered that libsoup incorrectly handled parsing certain NTLM
messages. If a user or automated system were tricked into connecting to
a malicious server, a remote attacker could possibly use this issue to
cause a denial of service (CVE-2019-17266).
                

References

SRPMS

7/core