Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Ubuntu: 23.10, 23.04, 22.04 LTS Critical: Iniparser Crash

Ubuntu Large Esm H500
Iniparser could be made to crash if it received a specially crafted file.
==========================================================================
Ubuntu Security Notice USN-6486-1
November 20, 2023

iniparser vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 23.10
- Ubuntu 23.04
- Ubuntu 22.04 LTS

Summary:

Iniparser could be made to crash if it received a specially crafted file.

Software Description:
- iniparser: development files for the iniParser INI file reader/writer

Details:

It was discovered that iniParser incorrectly handled certain files.
An attacker could possibly use this issue to cause a crash.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 23.10:
  libiniparser1                   4.1-6ubuntu0.23.10.1

Ubuntu 23.04:
  libiniparser1                   4.1-6ubuntu0.23.04.1

Ubuntu 22.04 LTS:
  libiniparser1                   4.1-4ubuntu4.1

In general, a standard system update will make all the necessary changes.

References:
  
  CVE-2023-33461

Package Information:
  https://launchpad.net/ubuntu/+source/iniparser/4.1-6ubuntu0.23.10.1
  https://launchpad.net/ubuntu/+source/iniparser/4.1-6ubuntu0.23.04.1
  https://launchpad.net/ubuntu/+source/iniparser/4.1-4ubuntu4.1

Ubuntu: 23.10, 23.04, 22.04 LTS Critical: Iniparser Crash

ubuntu
Calendar Grey November 20, 2023
Dist Ubuntu Esm H88
A vulnerability has been discovered in various Ubuntu releases stemming from a flaw in iniparser, which could lead to crashes when processing specially crafted input files.
Iniparser could be made to crash if it received a specially crafted file.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 23.10 - Ubuntu 23.04 - Ubuntu 22.04 LTS Summary: Iniparser could be made to crash if it received a specially crafted file. Software Description: - iniparser: development files for the iniParser INI file reader/writer Details: It was discovered that iniParser incorrectly handled certain files. An attacker could possibly use this issue to cause a crash.

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 23.10: libiniparser1 4.1-6ubuntu0.23.10.1 Ubuntu 23.04: libiniparser1 4.1-6ubuntu0.23.04.1 Ubuntu 22.04 LTS: libiniparser1 4.1-4ubuntu4.1 In general, a standard system update will make all the necessary changes.

References

CVE-2023-33461

Severity
critical
Lowest
Low
Medium
High
Critical

Ubuntu Security Notice USN-6486-1

Package Information

https://launchpad.net/ubuntu/+source/iniparser/4.1-6ubuntu0.23.10.1 https://launchpad.net/ubuntu/+source/iniparser/4.1-6ubuntu0.23.04.1 https://launchpad.net/ubuntu/+source/iniparser/4.1-4ubuntu4.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here