Mageia 2019-0007: units security update
Summary
A flaw was found in units. units_cur doesn't sanitize downloaded data. This allows a maliciously intended server to execute arbitrary code remotely on the client (rhbz#1598913). References:
References
- https://bugs.mageia.org/show_bug.cgi?id=23455
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/NGM5T2F2STAUWF76LMEA7NCLE3STBAQI/
Resolution
MGASA-2019-0007 - Updated units package fixes security vulnerability
SRPMS
- 6/core/units-2.18-1.mga6