Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 621880 (CVE-2017-9433) - <app-text/libmwaw-0.3.11-r1: Out-of-bounds write in the MsWrd1Parser::readFootnoteCorrespondence function
Summary: <app-text/libmwaw-0.3.11-r1: Out-of-bounds write in the MsWrd1Parser::readFoo...
Status: RESOLVED FIXED
Alias: CVE-2017-9433
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL: https://bugzilla.redhat.com/show_bug....
Whiteboard: B3 [noglsa cve]
Keywords:
Depends on:
Blocks:
 
Reported: 2017-06-16 07:53 UTC by Agostino Sarubbo
Modified: 2017-09-02 18:42 UTC (History)
0 users

See Also:
Package list:
=app-text/libmwaw-0.3.11-r1
Runtime testing required: No
stable-bot: sanity-check+


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Agostino Sarubbo gentoo-dev 2017-06-16 07:53:32 UTC
From ${URL} :

Document Liberation Project libmwaw has an out-of-bounds write caused by a heap-based buffer overflow related to the MsWrd1Parser::readFootnoteCorrespondance function in lib/MsWrd1Parser.cxx.

References:

https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=1037

Upstream patch:

https://sourceforge.net/p/libmwaw/libmwaw/ci/68b3b74569881248bfb6cbb4266177cc253b292f/


@maintainer(s): after the bump, in case we need to stabilize the package, please let us know if it is ready for the stabilization or not.
Comment 1 Andreas Sturmlechner gentoo-dev 2017-06-26 21:00:14 UTC
app-text/libmwaw-0.3.11-r1 was added to address this bug and is ready to be stabilised.
Comment 2 Andreas Sturmlechner gentoo-dev 2017-08-06 12:52:10 UTC
ping
Comment 3 Aaron Bauman (RETIRED) gentoo-dev 2017-09-02 15:37:35 UTC
amd64/x86 stable.

@maintainer, please clean.
Comment 4 Andreas Sturmlechner gentoo-dev 2017-09-02 18:37:45 UTC
Cleanup done in 5af882faaff278d7a12bd99be396e0462080f47d
Comment 5 Aaron Bauman (RETIRED) gentoo-dev 2017-09-02 18:42:09 UTC
Downgraded to B3.  No PoC on ACE/RCE.

GLSA Vote: No

Thanks, Andreas!