Summary: | <dev-libs/expat-2.2.7: large number of colons in input makes parser consume high amount of resources, leading to DoS (CVE-2018-20843) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sebastian Pipping <sping> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | freedesktop-bugs, security, sping |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20843 | ||
Whiteboard: | A3 [glsa+ cve] | ||
Package list: |
dev-libs/expat-2.2.7
|
Runtime testing required: | --- |
Description
Sebastian Pipping
2019-06-26 12:31:07 UTC
(You have to set package list) ia64 stable ppc stable ppc64 stable s390 stable amd64 stable x86 stable sparc stable hppa/sparc stable arm64 stable arm stable New GLSA request filed. This issue was resolved and addressed in GLSA 201911-08 at https://security.gentoo.org/glsa/201911-08 by GLSA coordinator Aaron Bauman (b-man). |