ALT-BU-2018-3121-1
Branch sisyphus update bulletin.
Closed vulnerabilities
BDU:2022-05861
Уязвимость функции _zip_read_eocd64 компонента zip_open.c библиотеки для работы с zip-архивами Libzip, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2017-14107
The _zip_read_eocd64 function in zip_open.c in libzip before 1.3.0 mishandles EOCD records, which allows remote attackers to cause a denial of service (memory allocation failure in _zip_cdir_grow in zip_dirent.c) via a crafted ZIP archive.
- https://blogs.gentoo.org/ago/2017/09/01/libzip-memory-allocation-failure-in-_zip_cdir_grow-zip_dirent-c/
- https://blogs.gentoo.org/ago/2017/09/01/libzip-memory-allocation-failure-in-_zip_cdir_grow-zip_dirent-c/
- https://github.com/nih-at/libzip/commit/9b46957ec98d85a572e9ef98301247f39338a3b5
- https://github.com/nih-at/libzip/commit/9b46957ec98d85a572e9ef98301247f39338a3b5
- [debian-lts-announce] 20211228 [SECURITY] [DLA 2858-1] libzip security update
- [debian-lts-announce] 20211228 [SECURITY] [DLA 2858-1] libzip security update
Closed vulnerabilities
Modified: 2024-11-21
CVE-2017-18187
In ARM mbed TLS before 2.7.0, there is a bounds-check bypass through an integer overflow in PSK identity parsing in the ssl_parse_client_psk_identity() function in library/ssl_srv.c.
- 103055
- 103055
- https://github.com/ARMmbed/mbedtls/blob/master/ChangeLog
- https://github.com/ARMmbed/mbedtls/blob/master/ChangeLog
- https://github.com/ARMmbed/mbedtls/commit/83c9f495ffe70c7dd280b41fdfd4881485a3bc28
- https://github.com/ARMmbed/mbedtls/commit/83c9f495ffe70c7dd280b41fdfd4881485a3bc28
- GLSA-201804-19
- GLSA-201804-19
- USN-4267-1
- USN-4267-1
- DSA-4138
- DSA-4138
- DSA-4147
- DSA-4147
Modified: 2024-11-21
CVE-2018-0487
ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted certificate chain that is mishandled during RSASSA-PSS signature verification within a TLS or DTLS session.
Modified: 2024-11-21
CVE-2018-0488
ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0, when the truncated HMAC extension and CBC are used, allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption) via a crafted application packet within a TLS or DTLS session.