Mageia alert MGASA-2020-0431 (raptor2)
From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
To: | updates-announce@ml.mageia.org | |
Subject: | [updates-announce] MGASA-2020-0431: Updated raptor2 packages fix a security vulnerability | |
Date: | Sat, 21 Nov 2020 13:22:05 +0100 | |
Message-ID: | <20201121122205.D55F99F736@duvel.mageia.org> | |
Archive-link: | Article |
MGASA-2020-0431 - Updated raptor2 packages fix a security vulnerability Publication date: 21 Nov 2020 URL: https://advisories.mageia.org/MGASA-2020-0431.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-25713 Description: A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_common. (CVE-2020-25713) References: - https://bugs.mageia.org/show_bug.cgi?id=27605 - https://bugs.librdf.org/mantis/view.php?id=650 - https://www.openwall.com/lists/oss-security/2020/11/13/1 - https://www.openwall.com/lists/oss-security/2020/11/16/1 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-2... SRPMS: - 7/core/raptor2-2.0.15-11.1.mga7