CVE-2019-6456: Null Pointer Dereference
Published Jan 16, 2019
·Updated
An issue was discovered in GNU Recutils 1.8. There is a NULL pointer dereference in the function recfexsize() in the file rec-fex.c of librec.a.
Affected Software
2 affected components
GNU recutils=1.8
debian/recutils<=1.8-1, <=1.9-2, <=1.9-3
Event History
Jan 16, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Dec 4, 2024
Data Sourced
via Launchpad·08:56 PM
Description
Dec 8, 2024
Data Sourced
via Ubuntu·08:56 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-6456?
CVE-2019-6456 has a medium severity due to the potential for a denial of service caused by a NULL pointer dereference.
2
How do I fix CVE-2019-6456?
To fix CVE-2019-6456, upgrade GNU Recutils to version 1.9 or later, where the vulnerability has been addressed.
3
What versions of GNU Recutils are affected by CVE-2019-6456?
GNU Recutils version 1.8 is affected by CVE-2019-6456, while later versions are not.
4
What kind of issue does CVE-2019-6456 represent?
CVE-2019-6456 represents a NULL pointer dereference vulnerability that can lead to a denial of service.
5
Where can I find more information about CVE-2019-6456?
Detailed information about CVE-2019-6456 can be typically found in the security advisories or vulnerability databases.