CVE-2018-3846: Unsafe use of sprintf() can allow a remote unauthenticated
attacker to execute arbitrary code
CVE-2018-3848: Stack-based buffer overflow in ffghbn() allows for
potential code execution
CVE-2018-3849: Stack-based buffer overflow in ffghtb() allows for
potential code execution
- https://bugs.mageia.org/show_bug.cgi?id=24586
- https://bugzilla.redhat.com/show_bug.cgi?id=1563915
- https://bugzilla.redhat.com/show_bug.cgi?id=1568184
- https://bugzilla.redhat.com/show_bug.cgi?id=1568189
- https://www.cve.org/CVERecord?id=CVE-2018-3846
- https://www.cve.org/CVERecord?id=CVE-2018-3848
- https://www.cve.org/CVERecord?id=CVE-2018-3849
- 6/core/cfitsio-3.430-1.1.mga6
Get the latest Linux and open source security news straight to your inbox.