USN-7286-1: iniParser vulnerability
Published Feb 24, 2025
·Updated
It was discovered that iniParser incorrectly handled certain files. An attacker could possibly use this issue to cause iniParser to crash, resulting in a denial of service.
Affected Software
6 affected componentsFixes available
All of the following
ubuntu/libiniparser1<4.2.1-1ubuntu0.1
4.2.1-1ubuntu0.1
Ubuntu Ubuntu=24.10
All of the following
ubuntu/libiniparser1<4.1-7ubuntu0.1
4.1-7ubuntu0.1
Ubuntu Ubuntu=24.04
All of the following
ubuntu/libiniparser1<4.1-4ubuntu4.2
4.1-4ubuntu4.2
Ubuntu Ubuntu=22.04
Event History
Feb 24, 2025
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-7286-1?
The vulnerability USN-7286-1 has a severity level designated to potentially result in a denial of service.
2
How do I fix USN-7286-1?
To fix USN-7286-1, upgrade the libiniparser1 package to the recommended versions based on your Ubuntu version.
3
What impact does USN-7286-1 have on affected systems?
USN-7286-1 can cause the iniParser to crash, which may lead to a denial of service for applications relying on this library.
4
Which software versions are affected by USN-7286-1?
USN-7286-1 affects specific versions of the libiniparser1 package in Ubuntu 22.04, 24.04, and 24.10.
5
Who should be concerned about USN-7286-1?
Developers and system administrators using affected versions of Ubuntu should be concerned about the implications of USN-7286-1.