QID 671114
Date Published: 2021-11-29
QID 671114: EulerOS Security Update for gc (EulerOS-SA-2019-2526)
The boehm-demers-weiser conservative garbage collector can be used as a garbage collecting replacement for c malloc or c++ new.
Security fix(es): integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.(cve-2016-9427)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
An arbitrary attacker may exploit this vulnerability to compromise the system.
Solution
The Vendor has released a security update to fix the vulnerability. For more information please visit EulerOS-SA-2019-2526 for updates and patch information
Vendor References
CVEs related to QID 671114
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| EulerOS-SA-2019-2526 | EulerOS V2.0SP5 |
|