Advisories Blog | G5 Cyber Security

Gentoo Linux Security Advisory 200612-5

Gentoo Linux Security Advisory GLSA 200612-05 – Kees Cook of Ubuntu discovered that ‘KLaola::readBigBlockDepot()’ in klaola.cc fills ‘num_of_bbd_blocks’ while reading a .ppt (PowerPoint) file without proper sanitizing, resulting in an integer overflow subsequently overwriting the heap with parts of the file being read. Versions less than 1.5.0 are affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/52924/glsa-200612-05.txt

Source: https://packetstormsecurity.com/files/52924/Gentoo-Linux-Security-Advisory-200612-5.html

Exit mobile version