Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 11 Oct 2017 11:40:33 +0800
From: Leon Zhao <leon.zhao.7@...il.com>
To: oss-security@...ts.openwall.com
Subject: CVE request: Two DoS vulneribilities in libextractor

Hello oss security,

I found two DoS vulneribilities in libextractor,

Affected version
1.4

1. Divide-By-Zero
https://bugzilla.redhat.com/show_bug.cgi?id=1499599
http://lists.gnu.org/archive/html/bug-libextractor/2017-10/msg00002.html
Fixed

2. Null Pointer Dereference
https://bugzilla.redhat.com/show_bug.cgi?id=1499600
http://lists.gnu.org/archive/html/bug-libextractor/2017-10/msg00003.html
Fixed


Best regards

Zhao Liang, Huawei Weiran Labs

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.