/[advisories]/25562.adv
ViewVC logotype

Contents of /25562.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 9101 - (show annotations) (download)
Wed Oct 16 22:09:02 2019 UTC (4 years, 6 months ago) by tmb
File size: 809 byte(s)
MGASA-2019-0296: e2fsprogs-1.45.4-1.mga7
1 type: security
2 subject: Updated e2fsprogs packages fix security vulnerability
3 CVE:
4 - CVE-2019-5094
5 src:
6 7:
7 core:
8 - e2fsprogs-1.45.4-1.mga7
9 description: |
10 Updated e2fsprogs packages fix security vulnerability:
11
12 Lilith of Cisco Talos discovered a buffer overflow flaw in the quota code
13 used by e2fsck from the ext2/ext3/ext4 file system utilities. Running
14 e2fsck on a malformed file system can result in the execution of arbitrary
15 code (CVE-2019-5094).
16
17 The e2fsprogs package has been updated to version 1.45.4, fixing this issue
18 and other bugs. See the upstream release notes for details.
19 references:
20 - https://bugs.mageia.org/show_bug.cgi?id=25562
21 - http://e2fsprogs.sourceforge.net/e2fsprogs-release.html#1.45.4
22 - https://www.debian.org/security/2019/dsa-4535
23 ID: MGASA-2019-0296

  ViewVC Help
Powered by ViewVC 1.1.30