Advisories ยป MGASA-2022-0425

Updated binutils/gdb packages fix security vulnerability

Publication date: 13 Nov 2022
Modification date: 13 Nov 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-3826 , CVE-2022-38533

Description

libiberty: Heap/stack buffer overflow in the dlang_lname function in
d-demangle.c (CVE-2021-3826)
binutils: heap-based buffer overflow in bfd_getl32() when called by
strip_main() in objcopy.c via a crafted file (CVE-2022-38533)
                

References

SRPMS

8/core