MGASA-2023-0317 - Updated quictls packages fix a security vulnerability

Publication date: 12 Nov 2023
URL: https://advisories.mageia.org/MGASA-2023-0317.html
Type: security
Affected Mageia releases: 9
CVE: CVE-2023-5363

The updated packages fix a security vulnerability:

Incorrect cipher key & IV length processing. (CVE-2023-5363)

References:
- https://bugs.mageia.org/show_bug.cgi?id=32484
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-5363

SRPMS:
- 9/core/quictls-3.0.12-1.mga9

Mageia 2023-0317: quictls security update

The updated packages fix a security vulnerability: Incorrect cipher key & IV length processing

Summary

The updated packages fix a security vulnerability:
Incorrect cipher key & IV length processing. (CVE-2023-5363)

References

- https://bugs.mageia.org/show_bug.cgi?id=32484

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-5363

Resolution

MGASA-2023-0317 - Updated quictls packages fix a security vulnerability

SRPMS

- 9/core/quictls-3.0.12-1.mga9

Severity
Publication date: 12 Nov 2023
URL: https://advisories.mageia.org/MGASA-2023-0317.html
Type: security
CVE: CVE-2023-5363

Related News