MGASA-2026-0460

Source
https://advisories.mageia.org/MGASA-2026-0460.html
Import Source
https://advisories.mageia.org/MGASA-2026-0460.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2026-0460
Upstream
CVE (2)
  • CVE-2026-13757
  • CVE-2026-18938
Published
2026-09-28T17:04:04Z
Modified
2026-09-28T17:15:03Z
Summary
Updated p11-kit packages fix security vulnerabilities
Details

The updated packages fix security vulnerabilities: Stack exhaustion via unbounded recursion in rpc attribute parsing. (CVE-2026-13757) Integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems. (CVE-2026-18938)

References
Credits

Affected packages

Mageia:10 / p11-kit

Package

Name
p11-kit
Purl
pkg:rpm/mageia/p11-kit?arch=source&distro=mageia-10

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
0.25.10-1.1.mga10

Ecosystem specific

{
    "section":  "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2026-0460.json"