MGASA-2017-0080

Source
https://advisories.mageia.org/MGASA-2017-0080.html
Import Source
https://advisories.mageia.org/MGASA-2017-0080.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2017-0080
Related
Published
2017-03-23T07:19:23Z
Modified
2017-03-23T07:08:40Z
Summary
Updated icoutils packages fix security vulnerability
Details

Multiple vulnerabilities were discovered in the icotool (CVE-2017-6010, CVE-2017-6011) and wrestool (CVE-2017-6009) tools of icoutils, a set of programs that deal with MS Windows icons and cursors, which may result in denial of service or the execution of arbitrary code if a malformed .ico or .exe file is processed.

References
Credits

Affected packages

Mageia:5 / icoutils

Package

Name
icoutils
Purl
pkg:rpm/mageia/icoutils?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.31.3-1.mga5

Ecosystem specific

{
    "section": "core"
}