First published: Mon Jun 24 2019(Updated: )
It was discovered that a libmysofa component does not properly validate multiplications and additions, and may crash with some specific input.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libmysofa0 | <0.6~dfsg0-2ubuntu0.19.04.1 | 0.6~dfsg0-2ubuntu0.19.04.1 |
Ubuntu OpenSSH Client | =19.04 | |
All of | ||
ubuntu/libmysofa0 | <0.6~dfsg0-2ubuntu0.18.10.1 | 0.6~dfsg0-2ubuntu0.18.10.1 |
Ubuntu OpenSSH Client | =18.10 | |
All of | ||
ubuntu/libmysofa0 | <0.6~dfsg0-2ubuntu0.18.04.1 | 0.6~dfsg0-2ubuntu0.18.04.1 |
Ubuntu OpenSSH Client | =18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-4033-1 is high due to the potential for crashes from improper input handling.
To fix USN-4033-1, you should update the libmysofa0 package to version 0.6~dfsg0-2ubuntu0.19.04.1 or higher for Ubuntu 19.04, and the corresponding version for other affected releases.
USN-4033-1 affects Ubuntu 18.04, 18.10, and 19.04 installations using the libmysofa0 package.
USN-4033-1 addresses a vulnerability where libmysofa does not properly validate multiplications and additions, leading to potential crashes.
There is no specific workaround for USN-4033-1; updating the package is the recommended solution.