Alerts This Week
Warning Icon 1 700
Alerts This Week
Warning Icon 1 700

Mageia 7: MGASA-2019-0331 Moderate: Libexif Out Of Bounds Write

mageia
Calendar Grey November 19, 2019
Dist Mageia Esm H88
Recent libexif updates from Mageia remediate a severe security vulnerability tied to remote privilege escalation.
The updated packages fix a security vulnerability: In libexif, there is a possible out of bounds write due to an integer overflow

Summary

The updated packages fix a security vulnerability:
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. (CVE-2019-9278)

References

- https://bugs.mageia.org/show_bug.cgi?id=25674

- https://www.openwall.com/lists/oss-security/2019/11/07/1

- https://www.cve.org/CVERecord?id=CVE-2019-9278

Resolution

SRPMS

- 7/core/libexif-0.6.21-14.1.mga7

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 19 Nov 2019
URL: https://advisories.mageia.org/MGASA-2019-0331.html
Type: security
CVE: CVE-2019-9278

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here