MGASA-2017-0159

Source
https://advisories.mageia.org/MGASA-2017-0159.html
Import Source
https://advisories.mageia.org/MGASA-2017-0159.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2017-0159
Related
Published
2017-06-08T21:39:47Z
Modified
2017-06-08T21:27:44Z
Summary
Updated libtasn1 packages fix security vulnerability
Details

Jakub Jirasek of Secunia Research discovered that libtasn1 did not properly validate its input. This would allow an attacker to cause a crash by denial-of-service, or potentially execute arbitrary code, by tricking a user into processing a maliciously crafted assignments file (CVE-2017-6891).

References
Credits

Affected packages

Mageia:5 / libtasn1

Package

Name
libtasn1
Purl
pkg:rpm/mageia/libtasn1?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.2-4.2.mga5

Ecosystem specific

{
    "section": "core"
}