Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.
{ "binaries": [ { "binary_version": "1.3.0-3ubuntu0.14.04.2+esm2", "binary_name": "libksba8" } ], "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro" }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-47629.json"
{ "binaries": [ { "binary_version": "1.3.3-1ubuntu0.16.04.1+esm2", "binary_name": "libksba8" } ], "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro" }
{ "binaries": [ { "binary_version": "1.3.5-2ubuntu0.18.04.2", "binary_name": "libksba8" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_version": "1.3.5-2ubuntu0.20.04.2", "binary_name": "libksba8" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_version": "1.6.0-2ubuntu0.2", "binary_name": "libksba8" } ], "availability": "No subscription required" }