MGASA-2021-0285 - Updated matio packages fix a security vulnerability

Publication date: 25 Jun 2021
URL: https://advisories.mageia.org/MGASA-2021-0285.html
Type: security
Affected Mageia releases: 7
CVE: CVE-2019-20052

A memory leak was discovered in Mat_VarCalloc in mat.c in matio 1.5.17 because
SafeMulDims does not consider the rank==0 case (CVE-2019-20052).

References:
- https://bugs.mageia.org/show_bug.cgi?id=27969
- https://github.com/tbeu/matio/commit/a47b7cd3aca70e9a0bddf8146eb4ab0cbd19c2c3
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20052

SRPMS:
- 7/core/matio-1.5.16-1.2.mga7

Mageia 2021-0285: matio security update

A memory leak was discovered in Mat_VarCalloc in mat.c in matio 1.5.17 because SafeMulDims does not consider the rank==0 case (CVE-2019-20052)

Summary

A memory leak was discovered in Mat_VarCalloc in mat.c in matio 1.5.17 because SafeMulDims does not consider the rank==0 case (CVE-2019-20052).

References

- https://bugs.mageia.org/show_bug.cgi?id=27969

- https://github.com/tbeu/matio/commit/a47b7cd3aca70e9a0bddf8146eb4ab0cbd19c2c3

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20052

Resolution

MGASA-2021-0285 - Updated matio packages fix a security vulnerability

SRPMS

- 7/core/matio-1.5.16-1.2.mga7

Severity
Publication date: 25 Jun 2021
URL: https://advisories.mageia.org/MGASA-2021-0285.html
Type: security
CVE: CVE-2019-20052

Related News