Ubuntu Security Update USN-5769-1: protobuf vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,959
Reaction score
80
Credits
-1,257
It was discovered that protobuf did not properly manage memory when serializing large messages. An attacker could possibly use this issue to cause applications using protobuf to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2015-5237) It was discovered that protobuf did not properly manage memory when parsing specifically crafted messages. An attacker could possibly use this issue to cause applications using protobuf to crash, resulting in a denial of service. (CVE-2022-1941)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top