Mageia 2019-0183: netpbm security update
Summary
The pm_mallocarray2 function allowed remote attackers to cause a denial of
service (heap-based buffer over-read) via a crafted image file
(CVE-2018-8975).
References
- https://bugs.mageia.org/show_bug.cgi?id=24753
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-8975
Resolution
MGASA-2019-0183 - Updated netpbm packages fix security vulnerability
SRPMS
- 6/core/netpbm-10.73.07-1.1.mga6