[Bug 1207927] New: VUL-0: CVE-2021-37311: fcitx5: Buffer Overflow vulnerability
http://bugzilla.opensuse.org/show_bug.cgi?id=1207927 Bug ID: 1207927 Summary: VUL-0: CVE-2021-37311: fcitx5: Buffer Overflow vulnerability Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.5 Hardware: Other URL: https://smash.suse.de/issue/356092/ OS: Other Status: NEW Severity: Minor Priority: P5 - None Component: Security Assignee: i@marguerite.su Reporter: thomas.leroy@suse.com QA Contact: security-team@suse.de Found By: Security Response Team Blocker: --- rh#2166996 Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the application's listening port. https://fcitx-im.org https://github.com/fcitx/fcitx5/pull/308 References: https://bugzilla.redhat.com/show_bug.cgi?id=2166996 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-37311 https://github.com/fcitx/fcitx5/pull/308 https://www.cve.org/CVERecord?id=CVE-2021-37311 https://fcitx-im.org -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1207927 http://bugzilla.opensuse.org/show_bug.cgi?id=1207927#c1 Thomas Leroy <thomas.leroy@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |RESOLVED Resolution|--- |FIXED --- Comment #1 from Thomas Leroy <thomas.leroy@suse.com> --- Fixed by [0] introduced in v5.0.9. Backports and Factory codestreams are already fixed. Closing https://github.com/fcitx/fcitx5/commit/6393480542178623c0af7a7e76647a401264f... -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com