MGASA-2019-0308 - Updated file packages fix security vulnerability

Publication date: 29 Oct 2019
URL: https://advisories.mageia.org/MGASA-2019-0308.html
Type: security
Affected Mageia releases: 7
CVE: CVE-2019-18218

Updated file packages fix security vulnerability:

A buffer overflow was found in file which may result in denial of service 
or potentially the execution of arbitrary code if a malformed CDF
(Composite Document File) file is processed (CVE-2019-18218).

References:
- https://bugs.mageia.org/show_bug.cgi?id=25615
- https://www.debian.org/security/2019/dsa-4550
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18218

SRPMS:
- 7/core/file-5.37-1.2.mga7

Mageia 2019-0308: file security update

Updated file packages fix security vulnerability: A buffer overflow was found in file which may result in denial of service or potentially the execution of arbitrary code if a ma...

Summary

Updated file packages fix security vulnerability:
A buffer overflow was found in file which may result in denial of service or potentially the execution of arbitrary code if a malformed CDF (Composite Document File) file is processed (CVE-2019-18218).

References

- https://bugs.mageia.org/show_bug.cgi?id=25615

- https://www.debian.org/security/2019/dsa-4550

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18218

Resolution

MGASA-2019-0308 - Updated file packages fix security vulnerability

SRPMS

- 7/core/file-5.37-1.2.mga7

Severity
Publication date: 29 Oct 2019
URL: https://advisories.mageia.org/MGASA-2019-0308.html
Type: security
CVE: CVE-2019-18218

Related News