QID 671094
Date Published: 2021-11-29
QID 671094: EulerOS Security Update for unixODBC (EulerOS-SA-2019-2267)
Install unixodbc if you want to access databases through odbc.you will also need the mysql-connector-odbc package if you want to access a mysql database, and/or the postgresql-odbc package for postgresql.
Security fix(es): in unixodbc before 2.3.5, there is a buffer overflow in the unicode_to_ansi_copy() function in drivermanager/__info.c.(cve-2018-7409) the sqlwritefiledsn function in odbcinst/sqlwritefiledsn.c in unixodbc 2.3.5 has strncpy arguments in the wrong order, which allows attackers to cause a denial of service or possibly have unspecified other impact.(cve-2018-7485)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
An arbitrary attacker may exploit this vulnerability to compromise the system.
CVEs related to QID 671094
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| EulerOS-SA-2019-2267 | EulerOS V2.0SP3 |
|