Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Mageia 6 MGASA-2018-0455 Moderate: Libmspack Denial Of Service

mageia
Calendar Grey November 17, 2018
Dist Mageia Esm H88
The recent updates to libmspack and cabextract packages in Mageia resolve significant security concerns associated with file processing vulnerabilities.
Hanno B?ck discovered that libmspack incorrectly handled certain CHM files

Summary

Hanno B?ck discovered that libmspack incorrectly handled certain CHM files. An attacker could possibly use this issue to cause a denial of service (CVE-2018-14679, CVE-2018-14680).
Jakub Wilk discovered that libmspack incorrectly handled certain KWAJ files. An attacker could possibly use this issue to execute arbitrary code (CVE-2018-14681).
Dmitry Glavatskikh discovered that libmspack incorrectly certain CHM files. An attacker could possibly use this issue to execute arbitrary code (CVE-2018-14682).
If a CAB file has a Quantum-compressed datablock with exactly 38912 compressed bytes, cabextract would write exactly one byte beyond its input buffer (CVE-2018-18584).
libmspack didn't reject blank CHM filenames that are blank because they have embedded null bytes, not just because they are zero-length (CVE-2018-18585).
chmextract didn't protect from absolute/relative pathnames in CHM files (CVE-2018-18586).

References

- https://bugs.mageia.org/show_bug.cgi?id=23365

- https://ubuntu.com/security/notices/USN-3728-1

- https://www.openwall.com/lists/oss-security/2018/10/22/1

- https://www.openwall.com/lists/oss-security/2018/10/23/11

- https://www.cve.org/CVERecord?id=CVE-2018-14679

- https://www.cve.org/CVERecord?id=CVE-2018-14680

- https://www.cve.org/CVERecord?id=CVE-2018-14681

- https://www.cve.org/CVERecord?id=CVE-2018-14682

- https://www.cve.org/CVERecord?id=CVE-2018-18584

- https://www.cve.org/CVERecord?id=CVE-2018-18585

- https://www.cve.org/CVERecord?id=CVE-2018-18586

Resolution

SRPMS

- 6/core/libmspack-0.9.1-0.alpha.1.mga6

- 6/core/cabextract-1.9-1.mga6

Publication date: 17 Nov 2018
URL: https://advisories.mageia.org/MGASA-2018-0455.html
Type: security
CVE: CVE-2018-14679, CVE-2018-14680, CVE-2018-14681, CVE-2018-14682, CVE-2018-18584, CVE-2018-18585, CVE-2018-18586

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here