[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    [oss-security] CVE-2013-6393 / libyaml buffer overflow
From:       Garth Mollett <gmollett () redhat ! com>
Date:       2014-01-31 0:03:38
Message-ID: 52EAE85A.40904 () redhat ! com
[Download RAW message or body]


Florian Weimer of the Red Hat Product Security Team discovered a heap
based buffer overflow due to integer misuse maybe triggered when parsing
large yaml documents.

This issue has been assigned CVE-2013-6393.

https://bugzilla.redhat.com/show_bug.cgi?id=1033990

-- 
Garth Mollett / Red Hat Security Response Team



["signature.asc" (application/pgp-signature)]

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic