First published: Tue Jan 03 2017(Updated: )
An integer overflow vulnerability was found in icoutils in the wrestool program. A maliciously crafted file could make the application crash or possibly allow code execution. References: <a href="http://seclists.org/oss-sec/2017/q1/38">http://seclists.org/oss-sec/2017/q1/38</a> <a href="https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=850017">https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=850017</a> Upstream patches: <a href="http://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=0d569f458f306b88f60156d60c9cf058125cf173">http://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=0d569f458f306b88f60156d60c9cf058125cf173</a> <a href="http://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=4fbe9222fd79ee31b7ec031b0be070a9a400d1d3">http://git.savannah.gnu.org/cgit/icoutils.git/commit/?id=4fbe9222fd79ee31b7ec031b0be070a9a400d1d3</a>
Credit: security@debian.org
Affected Software | Affected Version | How to fix |
---|---|---|
Icoutils Project Icoutils | <0.31.1 | |
Debian Debian Linux | =8.0 | |
Redhat Enterprise Linux Desktop | =7.0 | |
Redhat Enterprise Linux Server | =7.0 | |
Redhat Enterprise Linux Server Aus | =7.3 | |
Redhat Enterprise Linux Server Aus | =7.4 | |
Redhat Enterprise Linux Server Aus | =7.6 | |
Redhat Enterprise Linux Server Eus | =7.3 | |
Redhat Enterprise Linux Server Eus | =7.4 | |
Redhat Enterprise Linux Server Eus | =7.5 | |
Redhat Enterprise Linux Server Eus | =7.6 | |
Redhat Enterprise Linux Server Tus | =7.3 | |
Redhat Enterprise Linux Server Tus | =7.6 | |
Redhat Enterprise Linux Workstation | =7.0 | |
redhat/icoutils | <0.31.1 | 0.31.1 |
debian/icoutils | 0.32.3-3 0.32.3-4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.