MGASA-2018-0170

Source
https://advisories.mageia.org/MGASA-2018-0170.html
Import Source
https://advisories.mageia.org/MGASA-2018-0170.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2018-0170
Related
Published
2018-03-19T12:13:14Z
Modified
2018-03-19T11:32:50Z
Summary
Updated SDL_image packages fix security vulnerability
Details

An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A specially crafted xcf file can cause a stack-based buffer overflow resulting in potential code execution. An attacker can provide a specially crafted XCF file to trigger this vulnerability (CVE-2017-2887).

References
Credits

Affected packages