=========================================================================Ubuntu Security Notice USN-5133-1
November 04, 2021

A security issue was fixed in ICU
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 18.04 LTS
- Ubuntu 16.04 ESM
- Ubuntu 14.04 ESM

Summary:

ICU could be made to crash if it received specially crafted
input.

Software Description:
- icu: International Components for Unicode library

Details:

It was discovered that ICU contains a use after free issue.
An attacker could use this issue to cause a denial of service with 
crafted input.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.04 LTS:
icu-devtools 60.2-3ubuntu3.2
libicu60 60.2-3ubuntu3.2
libiculx60 60.2-3ubuntu3.2

Ubuntu 16.04 ESM:
icu-devtools 55.1-7ubuntu0.5+esm1
libicu55 55.1-7ubuntu0.5+esm1

Ubuntu 14.04 ESM:
icu-devtools 52.1-3ubuntu0.8+esm2
libicu52 52.1-3ubuntu0.8+esm2

In general, a standard system update will make all the necessary changes.

References:
https://ubuntu.com/security/notices/USN-5133-1
CVE-2020-21913

Package Information:
https://launchpad.net/ubuntu/+source/icu/60.2-3ubuntu3.2


Ubuntu 5133-1: ICU vulnerability

November 5, 2021
ICU could be made to crash if it received specially crafted input.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: icu-devtools 60.2-3ubuntu3.2 libicu60 60.2-3ubuntu3.2 libiculx60 60.2-3ubuntu3.2 Ubuntu 16.04 ESM: icu-devtools 55.1-7ubuntu0.5+esm1 libicu55 55.1-7ubuntu0.5+esm1 Ubuntu 14.04 ESM: icu-devtools 52.1-3ubuntu0.8+esm2 libicu52 52.1-3ubuntu0.8+esm2 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5133-1

CVE-2020-21913

Severity
November 04, 2021

Package Information

https://launchpad.net/ubuntu/+source/icu/60.2-3ubuntu3.2

Related News