Wind River Support Network

HomeDefectsLIN1021-862
Fixed

LIN1021-862 : Security Advisory - aspell - CVE-2019-25051

Created: Jul 20, 2021    Updated: Sep 25, 2021
Resolved Date: Sep 1, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.5
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::StringMap::add and acommon::Config::lookup_list).

CREATE(Triage):(User=admin) [CVE-2019-25051|https://nvd.nist.gov/vuln/detail/CVE-2019-25051]

CVEs


Live chat
Online