Mageia 2023-0046: libzen security update
Summary
A vulnerability classified as problematic has been found in MediaArea
ZenLib up to 0.4.38. This affects the function
Ztring::Date_From_Seconds_1970_Local of the file Source/ZenLib/Ztring.cpp.
The manipulation of the argument Value leads to unchecked return value to
null pointer dereference. (CVE-2020-36646)
References
- https://bugs.mageia.org/show_bug.cgi?id=31492
- https://www.debian.org/lts/security/2023/dla-3290
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-36646
Resolution
MGASA-2023-0046 - Updated libzen packages fix security vulnerability
SRPMS
- 8/core/libzen-0.4.38-1.1.mga8