Advisories ยป MGASA-2020-0015

Updated libextractor packages fix security vulnerability

Publication date: 05 Jan 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2019-15531

Description

Updated libextractor packages fix security vulnerability:

GNU Libextractor through 1.9 has a heap-based buffer over-read in the
function EXTRACTOR_dvi_extract_method in plugins/dvi_extractor.c
(CVE-2019-15531).
                

References

SRPMS

7/core