-----BEGIN PGP SIGNATURE-----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=Qt39
-----END PGP SIGNATURE-----
==========================================================================
Ubuntu Security Notice USN-6970-1
August 20, 2024
exfatprogs vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 22.04 LTS
Summary:
exfatprogs could be made to crash or run programs if it handled a specially
crafted partition.
Software Description:
- exfatprogs: tools to create, check and label exFAT filesystems
Details:
It was discovered that exfatprogs incorrectly handled certain memory
operations. If a user or automated system were tricked into handling
specially crafted exfat partitions, a remote attacker could use this issue
to cause exfatprogs to crash, resulting in a denial of service, or possibly
execute arbitrary code.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 22.04 LTS
exfatprogs 1.1.3-1ubuntu0.1
In general, a standard system update will make all the necessary changes.
References:
https://ubuntu.com/security/notices/USN-6970-1
CVE-2023-45897
Package Information:
https://launchpad.net/ubuntu/+source/exfatprogs/1.1.3-1ubuntu0.1
No comments:
Post a Comment