Advisories ยป MGASA-2024-0241

Updated erofs-utils packages fix security vulnerabilities

Publication date: 28 Jun 2024
Modification date: 28 Jun 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2023-33551 , CVE-2023-33552

Description

Heap Buffer Overflow in the erofsfsck_dirent_iter function in
fsck/main.c in erofs-utils v1.6 allows remote attackers to execute
arbitrary code via a crafted erofs filesystem image.
                

References

SRPMS

9/core