Advisories ยป MGASA-2020-0471

Updated libmaxminddb packages fix security vulnerability

Publication date: 28 Dec 2020
Modification date: 27 Dec 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-28241

Description

libmaxminddb before 1.4.3 has a heap-based buffer over-read in 
dump_entry_data_list in maxminddb.c (CVE-2020-28241).
                

References

SRPMS

7/core