Mageia alert MGASA-2024-0125 (xfig)
From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
To: | updates-announce@ml.mageia.org | |
Subject: | [updates-announce] MGASA-2024-0125: Updated xfig packages fix security vulnerability | |
Date: | Fri, 12 Apr 2024 22:45:52 +0200 | |
Message-ID: | <20240412204552.0CCDF9FD07@duvel.mageia.org> | |
Archive-link: | Article |
MGASA-2024-0125 - Updated xfig packages fix security vulnerability Publication date: 12 Apr 2024 URL: https://advisories.mageia.org/MGASA-2024-0125.html Type: security Affected Mageia releases: 9 CVE: CVE-2023-45920 Description: Xfig v3.2.8 was discovered to contain a NULL pointer dereference when calling XGetWMHints(). (CVE-2023-45920) References: - https://bugs.mageia.org/show_bug.cgi?id=33088 - https://lwn.net/Articles/969307/ - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-4... SRPMS: - 9/core/xfig-3.2.8b-3.1.mga9