=========================================================================Ubuntu Security Notice USN-4631-1
November 12, 2020

libmaxminddb vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 20.10
- Ubuntu 20.04 LTS

Summary:

libmaxminddb could be made to crash if it received specially crafted data.

Software Description:
- libmaxminddb: C library for the MaxMind DB file format

Details:

It was discovered that libmaxminddb incorrectly handled certain memory
operations. A remote attacker could possibly use this issue to cause
applications using libmaxminddb to crash, resulting in a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.10:
  libmaxminddb0                   1.4.2-0ubuntu1.20.10.1

Ubuntu 20.04 LTS:
  libmaxminddb0                   1.4.2-0ubuntu1.20.04.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-4631-1
  CVE-2020-28241

Package Information:
  https://launchpad.net/ubuntu/+source/libmaxminddb/1.4.2-0ubuntu1.20.10.1
  https://launchpad.net/ubuntu/+source/libmaxminddb/1.4.2-0ubuntu1.20.04.1

Ubuntu 4631-1: libmaxminddb vulnerability

November 12, 2020
libmaxminddb could be made to crash if it received specially crafted data.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: libmaxminddb0 1.4.2-0ubuntu1.20.10.1 Ubuntu 20.04 LTS: libmaxminddb0 1.4.2-0ubuntu1.20.04.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4631-1

CVE-2020-28241

Severity
November 12, 2020

Package Information

https://launchpad.net/ubuntu/+source/libmaxminddb/1.4.2-0ubuntu1.20.10.1 https://launchpad.net/ubuntu/+source/libmaxminddb/1.4.2-0ubuntu1.20.04.1

Related News