MGASA-2015-0335

Source
https://advisories.mageia.org/MGASA-2015-0335.html
Import Source
https://advisories.mageia.org/MGASA-2015-0335.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0335
Related
Published
2015-09-08T07:20:40Z
Modified
2015-09-08T07:02:49Z
Summary
Updated squashfs-tools packages fix security vulnerabilities
Details

Updated squashfs-tools package fixes security vulnerabilities:

The unsquashfs command from squashfs-tools is vulnerable to integer (CVE-2015-4645) and stack (CVE-2015-4646) overflows.

References
Credits

Affected packages

Mageia:5 / squashfs-tools

Package

Name
squashfs-tools
Purl
pkg:rpm/mageia/squashfs-tools?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.3-4.1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / squashfs-tools

Package

Name
squashfs-tools
Purl
pkg:rpm/mageia/squashfs-tools?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.2-7.1.mga4

Ecosystem specific

{
    "section": "core"
}