Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Mageia: 2023-0167 High libtommath Memory Corruption Vulnerability Report

mageia
Calendar Grey September 24, 2023
Dist Mageia Esm H88
Debian 2023-0453: Urgent openssl patch fixes buffer overflow vulnerabilities permitting remote execution and service disruption.
libtomath is vulnerable to an Integer Overflow vulnerability that could allow attackers to execute arbitrary code and cause a denial of service (DoS)

Summary

libtomath is vulnerable to an Integer Overflow vulnerability that could allow attackers to execute arbitrary code and cause a denial of service (DoS). (CVE-2023-36328)

References

- https://bugs.mageia.org/show_bug.cgi?id=32247

- https://github.com/libtom/libtommath/pull/546

- https://www.cve.org/CVERecord?id=CVE-2023-36328

Resolution

SRPMS

- 9/core/libtommath-1.2.1-1.mga9

- 8/core/libtommath-1.2.1-1.mga8

Publication date: 24 Sep 2023
URL: https://advisories.mageia.org/MGASA-2023-0265.html
Type: security
CVE: CVE-2023-36328

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here