Mageia 2018-0456: hylafax+ security update
Summary
Luis Merino, Markus Vervier and Eric Sesterhenn discovered that missing
input sanitising in the Hylafax fax software could potentially result in
the execution of arbitrary code via a malformed fax message
(CVE-2018-17141).
References
- https://bugs.mageia.org/show_bug.cgi?id=23661
- https://www.debian.org/security/2018/dsa-4298
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-17141
Resolution
MGASA-2018-0456 - Updated hylafax+ packages fix security vulnerability
SRPMS
- 6/core/hylafax+-5.6.1-1.mga6