Updated libseccomp packages fix security vulnerability:
Jann Horn discovered that libseccomp did not correctly generate 64-bit
syscall argument comparisons with arithmetic operators (LT, GT, LE, GE).
An attacker could use this to bypass intended access restrictions for
argument-filtered system calls (CVE-2019-9893).
- https://bugs.mageia.org/show_bug.cgi?id=24523
- https://ubuntu.com/security/notices/USN-4001-1
- https://www.cve.org/CVERecord?id=CVE-2019-9893
- 7/core/libseccomp-2.4.2-1.mga7
Get the latest Linux and open source security news straight to your inbox.