Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 7, 8: MGASA-2021-0331 Moderate: Connman Buffer Overflow

mageia
Calendar Grey July 10, 2021
Dist Mageia Esm H88
Recent connman updates rectify buffer overflow vulnerability in Mageia. Critical security enhancement applied.
Updated connman packages fix security vulnerability

Summary

Updated connman packages fix security vulnerability.
ConnMan (aka Connection Manager) 1.30 through 1.39 has a stack-based buffer overflow in uncompress in dnsproxy.c via NAME, RDATA, or RDLENGTH (for A or AAAA) (CVE-2021-33833).

References

- https://bugs.mageia.org/show_bug.cgi?id=29124

- https://www.openwall.com/lists/oss-security/2021/06/09/1

- https://www.cve.org/CVERecord?id=CVE-2021-33833

Resolution

SRPMS

- 8/core/connman-1.38-2.1.mga8

- 7/core/connman-1.37-1.2.mga7

Publication date: 10 Jul 2021
URL: https://advisories.mageia.org/MGASA-2021-0331.html
Type: security
CVE: CVE-2021-33833

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here