Errata ID | 463 |
---|---|
Date | 2018-08-15 |
Source package | libmspack |
Fixed in version | 0.5-1.A~4.2.4.201808101752 |
Description | This update addresses the following issues: * heap-based buffer overflow in mspack/lzxd.c (CVE-2017-6419) * Stack-based buffer over-read in cabd_read_string function (CVE-2017-11423) * off-by-one error in the CHM PMGI/PMGL chunk number validity checks (CVE-2018-14679) * off-by-one error in the CHM chunk number validity checks (CVE-2018-14680) * Out-of-bounds Write in kwajd_read_headers in mspack/kwajd.c (CVE-2018-14681) * off-by-one error in the TOLOWER() macro for CHM decompression (CVE-2018-14682) |
Additional notes | |
CVE ID | CVE-2017-6419 CVE-2017-11423 CVE-2018-14679 CVE-2018-14680 CVE-2018-14681 CVE-2018-14682 |
UCS Bug number | #47575 |