Addressing Libcdio Buffer Overflow Vulnerability in Mageia MGASA-2024-0252
Summary
Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to
execute arbitrary code via a crafted ISO 9660 image file.
(CVE-2024-36600)
References
- https://bugs.mageia.org/show_bug.cgi?id=33349
- https://ubuntu.com/security/notices/USN-6855-1
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-36600
Resolution
MGASA-2024-0252 - Updated libcdio packages fix security vulnerability
SRPMS
- 9/core/libcdio-2.1.0-4.1.mga9