Libksba before 1.6.3 is prone to an integer overflow vulnerability in the CRL signature parser.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_name": "libksba-dev", "binary_version": "1.3.0-3ubuntu0.14.04.2+esm2" }, { "binary_name": "libksba8", "binary_version": "1.3.0-3ubuntu0.14.04.2+esm2" }, { "binary_name": "libksba8-dbgsym", "binary_version": "1.3.0-3ubuntu0.14.04.2+esm2" } ] }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_name": "libksba-dev", "binary_version": "1.3.3-1ubuntu0.16.04.1+esm2" }, { "binary_name": "libksba8", "binary_version": "1.3.3-1ubuntu0.16.04.1+esm2" }, { "binary_name": "libksba8-dbgsym", "binary_version": "1.3.3-1ubuntu0.16.04.1+esm2" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libksba-dev", "binary_version": "1.3.5-2ubuntu0.18.04.2" }, { "binary_name": "libksba-mingw-w64-dev", "binary_version": "1.3.5-2ubuntu0.18.04.2" }, { "binary_name": "libksba8", "binary_version": "1.3.5-2ubuntu0.18.04.2" }, { "binary_name": "libksba8-dbgsym", "binary_version": "1.3.5-2ubuntu0.18.04.2" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libksba-dev", "binary_version": "1.3.5-2ubuntu0.20.04.2" }, { "binary_name": "libksba-mingw-w64-dev", "binary_version": "1.3.5-2ubuntu0.20.04.2" }, { "binary_name": "libksba8", "binary_version": "1.3.5-2ubuntu0.20.04.2" }, { "binary_name": "libksba8-dbgsym", "binary_version": "1.3.5-2ubuntu0.20.04.2" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_name": "libksba-dev", "binary_version": "1.6.0-2ubuntu0.2" }, { "binary_name": "libksba-mingw-w64-dev", "binary_version": "1.6.0-2ubuntu0.2" }, { "binary_name": "libksba8", "binary_version": "1.6.0-2ubuntu0.2" }, { "binary_name": "libksba8-dbgsym", "binary_version": "1.6.0-2ubuntu0.2" } ] }