QID 178587

Date Published: 2021-05-17

QID 178587: Debian Security Update for composer (DLA 2654-1)

Debian has released security update for composer to fix the vulnerabilities.

This vulnerability could be exploited to gain partial access to sensitive information. Malicious users could also use this vulnerability to change partial contents or configuration on the system. Additionally this vulnerability can also be used to cause a limited denial of service in the form of interruptions in resource availability.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 6.5 severity.
  • Solution
    Refer to Debian LTS Announce DLA 2654-1 to address this issue and obtain further details.

    CVEs related to QID 178587

    Software Advisories
    Advisory ID Software Component Link
    DLA 2654-1 Debian URL Logo lists.debian.org/debian-lts-announce/2021/05/msg00009.html