Jump to content

Security Advisory (MDKSA-2004:049): libneon


 Share

Recommended Posts

MandrakeSoft Security Advisory MDKSA-2004:049 : libneon

 

May 19th, 2004

Updated libneon packages fix heap variable overflow issues

 

It was discovered that in portions of neon, sscanf() is used in an unsafe manner. This will result in an overflow of a static heap variable.

 

The updated packages provide a patched libneon to correct these problems.

 

 

The released versions of Mandrake GNU/Linux affected are:

  • 9.2
  • 9.2/AMD64
  • 10.0

Full information about this advisory, including the updated packages, is available at:

www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:049

 

Other references:

http://cve.mitre.org/cgi-bin/cvename.cgi?n...e=CAN-2004-0398

 

Posted automatically by aru (mdksec2mub v0.0.8)

Link to comment
Share on other sites

 Share

×
×
  • Create New...