The package musl before version 1.2.1-2 is vulnerable to arbitrary code execution. . Arch Linux Security Advisory ASA-202011-29 ========================================= Severity: Medium Date : 2020-11-26 CVE-ID : CVE-2020-28928 Package : musl Type : arbitrary code execution Remote : No Link : https://security.archlinux.org/AVG-1287 Summary ====== The package musl before version 1.2.1-2 is vulnerable to arbitrary code execution. Resolution ========= Upgrade to 1.2.1-2. # pacman -Syu "musl> =1.2.1-2" The problem has been fixed upstream but no release is available yet. Workaround ========= None. Description ========== The wcsnrtombs function in all musl libc versions up to 1.2.1 has been found to have multiple bugs in the handling of the destination buffer size when limiting the input character count, which can lead to an infinite loop with no progress (no overflow) or to writing past the end of the destination buffer. Impact ===== An attacker might be able to execute arbitrary code via crafted input content. References ========= https://bugs.archlinux.org/task/68685 https://www.openwall.com/lists/musl/2020/11/19/1 https://security.archlinux.org/CVE-2020-28928 . The musl library on Arch Linux contains a critical security vulnerability that enables arbitrary code execution. Upgrading to the latest version is vital for system protection. Arch Linux, Musl Execution Risk, Security Update. . Severity: Medium. LinuxSecurity.com Team
The package musl before version 1.1.8-1 is vulnerable to arbitrary code execution. . Arch Linux Security Advisory ASA-201503-26 ========================================= Severity: Critical Date : 2015-03-31 CVE-ID : CVE-2015-1817 Package : musl Type : arbitrary code execution Remote : No Link : https://wiki.archlinux.org/title/CVE Summary ====== The package musl before version 1.1.8-1 is vulnerable to arbitrary code execution. Resolution ========= Upgrade to 1.1.8-1. # pacman -Syu "musl> =1.1.8-1" The problem has been fixed upstream in version 1.1.8. Workaround ========= None. Description ========== A stack-based buffer overflow has been found in musl libc's ipv6 address literal parsing code. Programs which call the inet_pton or getaddrinfo function with AF_INET6 or AF_UNSPEC and untrusted address strings are affected. Successful exploitation yields control of the return address. Having enabled stack protector at the application level does not mitigate the issue. Impact ===== An attacker can execute arbitrary code by submitting a carefully crafted IPv6 address to a program linked with musl calling inet_pton() or getaddrinfo() with AF_INET6 or AF_UNSPEC. References ========= https://www.openwall.com/lists/musl/2015/03/30/1 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-1817 . Arch Linux Security Announcement ASA-202310-42 Severity: High Date: 2023-10-05 CVE-ID: CVE-2023-4049. Arbitrary Code Execution, Musl Package Update, Arch Linux Advisory. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.