MGASA-2019-0257 - Updated zstd packages fix security vulnerability

Publication date: 06 Sep 2019
URL: https://advisories.mageia.org/MGASA-2019-0257.html
Type: security
Affected Mageia releases: 6
CVE: CVE-2019-11922

Updated zstd packages fix security vulnerability:

It was discovered that Zstandard incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code
(CVE-2019-11922).

References:
- https://bugs.mageia.org/show_bug.cgi?id=25375
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11922

SRPMS:
- 6/core/zstd-1.3.8-1.mga6

Mageia 2019-0257: zstd security update

Updated zstd packages fix security vulnerability: It was discovered that Zstandard incorrectly handled certain inputs

Summary

Updated zstd packages fix security vulnerability:
It was discovered that Zstandard incorrectly handled certain inputs. An attacker could possibly use this issue to execute arbitrary code (CVE-2019-11922).

References

- https://bugs.mageia.org/show_bug.cgi?id=25375

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11922

Resolution

MGASA-2019-0257 - Updated zstd packages fix security vulnerability

SRPMS

- 6/core/zstd-1.3.8-1.mga6

Severity
Publication date: 06 Sep 2019
URL: https://advisories.mageia.org/MGASA-2019-0257.html
Type: security
CVE: CVE-2019-11922

Related News