LWN.net Logo

mcrypt: buffer overflow

Package(s):mcrypt CVE #(s):CVE-2012-4527
Created:November 5, 2012 Updated:November 8, 2012
Description: From the openSUSE advisory:

Some potential mcrypt buffer overflows in the commandline tool were fixed, which could lead to early aborts of mcrypt. Due to FORTIFY_SOURCE catching such cases, it would have only aborted mcrypt with a buffer overflow backtrace.

Alerts:
openSUSE openSUSE-SU-2012:1440-1 2012-11-05
Fedora FEDORA-2012-17318 2012-11-08
Fedora FEDORA-2012-17290 2012-11-08

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds