Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 31: FEDORA-2019-4fa597c615 critical: libdwarf DoS Fix

fedora
Calendar Grey October 7, 2019
Dist Fedora Esm H88
Fedora 31 features a significant libdwarf update, addressing vulnerabilities that could cause Denial of Service attacks, enhancing system stability against exploits.
Update to latest upstream release

Summary

Library to access the DWARF debugging file format which supports

source level debugging of a number of procedural languages, such as C, C++,

and Fortran. Please see https://dwarfstd.org/ for DWARF specification.

Update to latest upstream release

[ 1 ] Bug #1732720 - CVE-2019-14249 libdwarf: division by zero in dwarf_elf_load_headers.c leading to DoS [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1732720

[ 2 ] Bug #1758409 - libdwarf-20191002 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1758409

su -c 'dnf upgrade --advisory FEDORA-2019-4fa597c615' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 31
Version: 20191002
Release: 1.fc31
Summary: Library to access the DWARF Debugging file format

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here