security advisorybuffer overflowdebian update
It was discovered that there was a potential buffer overflow vulnerability in libeconf, a configuration file parser. This could have been exploited via malicously-crafted configuration files. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4164-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Chris Lamb May 12, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : libeconf Version : 0.3.8-1+deb11u1 CVE ID : CVE-2023-22652 Debian Bug : 1037333 It was discovered that there was a potential buffer overflow vulnerability in libeconf, a configuration file parser. This could have been exploited via malicously-crafted configuration files. For Debian 11 bullseye, this problem has been fixed in version 0.3.8-1+deb11u1. We recommend that you upgrade your libeconf packages. For the detailed security status of libeconf please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/libeconf Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . LibEconf security patch mitigates buffer overflow vulnerabilities within Debian 11. Users advised to update for enhanced protection.. Debian LTS Update, LibEconf Security, Buffer Overflow Risk. . Severity: Critical. LinuxSecurity.com Team
May 12, 2025
•Critical
Debian LTS