Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Versions 2.2.1 and prior are vulnerable to out-of-bounds array access. A user of the GNOME desktop environment can be exploited by downloading a cue sheet from a malicious webpage. Because the file is saved to `~/Downloads`, it is then automatically scanned by tracker-miners. And because it has a .cue filename extension, tracker-miners use libcue to . MGASA-2023-0300 - Updated libcue packages fix a security vulnerability Publication date: 23 Oct 2023 URL: https://advisories.mageia.org/MGASA-2023-0300.html Type: security Affected Mageia releases: 8, 9 CVE: CVE-2023-43641 Versions 2.2.1 and prior are vulnerable to out-of-bounds array access. A user of the GNOME desktop environment can be exploited by downloading a cue sheet from a malicious webpage. Because the file is saved to `~/Downloads`, it is then automatically scanned by tracker-miners. And because it has a .cue filename extension, tracker-miners use libcue to parse the file. The file exploits the vulnerability in libcue to gain code execution. (CVE-2023-43641) References: - https://bugs.mageia.org/show_bug.cgi?id=32372 - https://www.openwall.com/lists/oss-security/2023/10/09/3 - https://www.cve.org/CVERecord?id=CVE-2023-43641 SRPMS: - 9/core/libcue-2.3.0-1.mga9 - 8/core/libcue-2.3.0-1.mga8 . Mageia 2023-0301 tackles vulnerabilities in libcue, providing enhancements for KDE users to mitigate potential exploit attempts.. Mageia Security Update, Libcue Exploit Fix, Out-of-Bounds Risk. . Severity: Important. LinuxSecurity.com Team
CUE could be made to execute arbitrary code if it received a specially crafted file.. ========================================================================== Ubuntu Security Notice USN-6423-2 October 17, 2023 libcue vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: Summary: CUE could be made to execute arbitrary code if it received a specially crafted file. Software Description: Details: USN-6423-1 fixed a vulnerability in CUE. This update provides the corresponding updates for Ubuntu 23.10. Original advisory details: It was discovered that CUE incorrectly handled certain files. An attacker could possibly use this issue to expose sensitive information or execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6423-1 CVE-2023-43641 . A critical vulnerability permits unauthorized code execution through specially designed files. Patches for Ubuntu distributions are now released.. Ubuntu Libcue Update, Arbitrary Code Threat, Security Notice. . Severity: Critical. LinuxSecurity.com Team
* bsc#1215728 Cross-References: * CVE-2023-43641 . # Security update for libcue Announcement ID: SUSE-SU-2023:4090-1 Rating: important References: * bsc#1215728 Cross-References: * CVE-2023-43641 CVSS scores: * CVE-2023-43641 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H * CVE-2023-43641 ( NVD ): 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Affected Products: * Desktop Applications Module 15-SP4 * Desktop Applications Module 15-SP5 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Workstation Extension 15 SP4 * SUSE Linux Enterprise Workstation Extension 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves one vulnerability can now be installed. ## Description: This update for libcue fixes the following issues: * CVE-2023-43641: Fixed a buffer overflow while parsinga malicious file (bsc#1215728). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Desktop Applications Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP4-2023-4090=1 * Desktop Applications Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP5-2023-4090=1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-4090=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4090=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4090=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-4090=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-4090=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2023-4090=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2023-4090=1 * SUSE Linux Enterprise Workstation Extension 15 SP4 zypper in -t patch SUSE-SLE-Product-WE-15-SP4-2023-4090=1 * SUSE Linux Enterprise Workstation Extension 15 SP5 zypper in -t patch SUSE-SLE-Product-WE-15-SP5-2023-4090=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2023-4090=1 ## Package List: * Desktop Applications Module 15-SP4 (aarch64 ppc64le s390x x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * Desktop Applications Module 15-SP5 (aarch64 ppc64le s390x x86_64) *libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP3 (aarch64 x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Workstation Extension 15 SP4 (x86_64) * libcue-debugsource-2.1.0-150000.3.3.1 * libcue-devel-2.1.0-150000.3.3.1 * SUSE Linux Enterprise Workstation Extension 15 SP5 (x86_64) * libcue-debugsource-2.1.0-150000.3.3.1 * libcue-devel-2.1.0-150000.3.3.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * libcue2-2.1.0-150000.3.3.1 * libcue-debugsource-2.1.0-150000.3.3.1 * libcue2-debuginfo-2.1.0-150000.3.3.1 ## References: *https://www.suse.com/security/cve/CVE-2023-43641.html * https://bugzilla.suse.com/show_bug.cgi?id=1215728 . Secure your system by installing the vital libcue security update to fix a buffer overflow vulnerability with these detailed SUSE instructions. libcue Security, SUSE Updates, Buffer Overflow Fix. . Severity: Important. LinuxSecurity.com Team
This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-1fe05ac8d9 2023-10-13 01:31:55.137994 -------------------------------------------------------------------------------- Name : libcue Product : Fedora 37 Version : 2.2.1 Release : 13.fc37 URL : https://github.com/lipnitsk/libcue Summary : Cue sheet parser library Description : Libcue is intended for parsing a so-called cue sheet from a char string or a file pointer. For handling of the parsed data a convenient API is available. -------------------------------------------------------------------------------- Update Information: This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 10 2023 Adam Williamson - 2.2.1-13 - Fix CVE-2023-43641 (Kevin Backhouse) * Thu Jul 20 2023 Fedora Release Engineering - 2.2.1-12 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Thu Jan 19 2023 Fedora Release Engineering - 2.2.1-11 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2242943 - 1-Click RCE Exploit in Libcue (CVE-2023-43641) https://bugzilla.redhat.com/show_bug.cgi?id=2242943 [ 2 ] Bug #2243167 - CVE-2023-43641 libcue: a out-of-bounds array access leads to RCE [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2243167 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-1fe05ac8d9' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-eec9ce5935 2023-10-12 01:44:15.277132 -------------------------------------------------------------------------------- Name : libcue Product : Fedora 38 Version : 2.2.1 Release : 13.fc38 URL : https://github.com/lipnitsk/libcue Summary : Cue sheet parser library Description : Libcue is intended for parsing a so-called cue sheet from a char string or a file pointer. For handling of the parsed data a convenient API is available. -------------------------------------------------------------------------------- Update Information: This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 10 2023 Adam Williamson - 2.2.1-13 - Fix CVE-2023-43641 (Kevin Backhouse) * Thu Jul 20 2023 Fedora Release Engineering - 2.2.1-12 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2242943 - 1-Click RCE Exploit in Libcue (CVE-2023-43641) https://bugzilla.redhat.com/show_bug.cgi?id=2242943 [ 2 ] Bug #2243167 - CVE-2023-43641 libcue: a out-of-bounds array access leads to RCE [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2243167 -------------------------------------------------------------------------------- Thisupdate can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-eec9ce5935' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Kevin Backhouse discovered an out-of-bounds array access in Libcue, a library for parsing CD metadata, which could result in the execution of arbitrary code. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-3615-1
This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-f4e74a94a2 2023-10-11 18:50:45.975453 -------------------------------------------------------------------------------- Name : libcue Product : Fedora 39 Version : 2.2.1 Release : 13.fc39 URL : https://github.com/lipnitsk/libcue Summary : Cue sheet parser library Description : Libcue is intended for parsing a so-called cue sheet from a char string or a file pointer. For handling of the parsed data a convenient API is available. -------------------------------------------------------------------------------- Update Information: This update backports the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See [this write-up by Kevin Backhouse](- gnome-cve-2023-43641/) for details. Thanks to Kevin for discovering the issue and writing the fix. -------------------------------------------------------------------------------- ChangeLog: * Tue Oct 10 2023 Adam Williamson - 2.2.1-13 - Fix CVE-2023-43641 (Kevin Backhouse) -------------------------------------------------------------------------------- References: [ 1 ] Bug #2242943 - 1-Click RCE Exploit in Libcue (CVE-2023-43641) https://bugzilla.redhat.com/show_bug.cgi?id=2242943 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f4e74a94a2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with theFedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Kevin Backhouse discovered an out-of-bounds array access in Libcue, a library for parsing CD metadata, which could result in the execution of arbitrary code. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5524-1
Get the latest Linux and open source security news straight to your inbox.