MGASA-2021-0414

Source
https://advisories.mageia.org/MGASA-2021-0414.html
Import Source
https://advisories.mageia.org/MGASA-2021-0414.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2021-0414
Related
Published
2021-09-04T17:01:38Z
Modified
2021-09-04T16:29:48Z
Summary
Updated libspf2 packages fix security vulnerability
Details

A stack buffer overflow in libspf2 versions below 1.2.11 when processing certain SPF macros can lead to Denial of service and potentially code execution via malicious crafted SPF explanation messages (CVE-2021-20314).

References
Credits

Affected packages

Mageia:8 / libspf2

Package

Name
libspf2
Purl
pkg:rpm/mageia/libspf2?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.10-5.1.mga8

Ecosystem specific

{
    "section": "core"
}