=========================================================================Ubuntu Security Notice USN-5672-2
March 06, 2023

gmp vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 14.04 ESM

Summary:

GMP could be made to crash if it received specially crafted
input.

Software Description:
- gmp: Multiprecision arithmetic library developers tools

Details:

USN-5672-1 fixed a vulnerability in GMP. This update provides
the corresponding update for Ubuntu 14.04 ESM.

Original advisory details:

  It was discovered that GMP did not properly manage memory
  on 32-bit platforms when processing a specially crafted
  input. An attacker could possibly use this issue to cause
  applications using GMP to crash, resulting in a denial of
  service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 ESM:
   libgmp-dev                      2:5.1.3+dfsg-1ubuntu1+esm1
   libgmp10                        2:5.1.3+dfsg-1ubuntu1+esm1
   libgmpxx4ldbl                   2:5.1.3+dfsg-1ubuntu1+esm1

In general, a standard system update will make all the necessary changes.

References:
   https://ubuntu.com/security/notices/USN-5672-2
   https://ubuntu.com/security/notices/USN-5672-1
   CVE-2021-43618

Ubuntu 5672-2: GMP vulnerability

March 6, 2023
GMP could be made to crash if it received specially crafted input.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM:   libgmp-dev                      2:5.1.3+dfsg-1ubuntu1+esm1   libgmp10                        2:5.1.3+dfsg-1ubuntu1+esm1   libgmpxx4ldbl                   2:5.1.3+dfsg-1ubuntu1+esm1 In general, a standard system update will make all the necessary changes.

References

  https://ubuntu.com/security/notices/USN-5672-2

  https://ubuntu.com/security/notices/USN-5672-1

  CVE-2021-43618

Severity
March 06, 2023

Package Information

Related News