First published: Thu May 24 2018(Updated: )
An issue was discovered in Liblouis 3.5.0. A invalid free in the compileRule function in compileTranslationTable.c allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Liblouis Liblouis | =3.5.0 | |
Canonical Ubuntu Linux | =14.04 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =17.10 | |
Canonical Ubuntu Linux | =18.04 | |
ubuntu/liblouis | <3.5.0-1ubuntu0.1 | 3.5.0-1ubuntu0.1 |
debian/liblouis | 3.16.0-1 3.24.0-1 3.30.0-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11410 is a vulnerability discovered in Liblouis 3.5.0 that allows remote attackers to cause a denial of service or possibly have other unspecified impacts.
CVE-2018-11410 has a severity rating of 9.8, which is considered critical.
The affected software for CVE-2018-11410 includes Liblouis versions 3.5.0, 3.8.0-2, 3.16.0-1, 3.24.0-1, and 3.27.0-1.
To fix CVE-2018-11410, update your Liblouis software to version 3.8.0-2, 3.16.0-1, 3.24.0-1, or 3.27.0-1.
More information about CVE-2018-11410 can be found at the following references: [Reference 1](http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00038.html), [Reference 2](http://www.securityfocus.com/bid/104324), [Reference 3](https://bugzilla.redhat.com/show_bug.cgi?id=1582024).