Oval Definition:
oval:com.ubuntu.disco:def:2019192210000000
Revision Date
:
2019-11-21
Version
:
1
Title
:
CVE-2019-19221 on Ubuntu 19.04 (disco) - low.
Description
:
In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. For example, bsdtar crashes via a crafted archive.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2019-19221
Platform(s)
:
Ubuntu 19.04
Product(s)
:
Definition Synopsis
Ubuntu 19.04 (disco) is installed.
AND
libarchive package in disco is affected and needs fixing.
BACK