The updated packages fix a security vulnerability:
International Components for Unicode (ICU) for C/C++ 63.1 has an integer
overflow in number::impl::DecimalQuantity::toScientificString() in
i18n/number_decimalquantity.cpp. (CVE-2018-18928)
- https://bugs.mageia.org/show_bug.cgi?id=23155
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/DHAC6XIATCPVSWFNBGGL2MRSBMN2F7D5/
- https://www.cve.org/CVERecord?id=CVE-2018-18928
- 7/core/icu-63.1-1.1.mga7
Get the latest Linux and open source security news straight to your inbox.