MGASA-2019-0150

Source
https://advisories.mageia.org/MGASA-2019-0150.html
Import Source
https://advisories.mageia.org/MGASA-2019-0150.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2019-0150
Related
Published
2019-04-10T22:46:20Z
Modified
2019-04-10T22:15:56Z
Summary
Updated gpsd packages fix security vulnerability
Details

A stack-based buffer overflow flaw was found in gpsd versions 2.90 to 3.17. Successful exploitation of this vulnerability could allow remote code execution, data exfiltration, or denial-of service via device crash (CVE-2018-17937).

References
Credits

Affected packages

Mageia:6 / gpsd

Package

Name
gpsd
Purl
pkg:rpm/mageia/gpsd?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.16-2.2.mga6

Ecosystem specific

{
    "section": "core"
}