USN-4055-1
Dashboard / Vulnerabilities / USN-4055-1
USN-4055-1
Summary: flightcrew vulnerabilities
Details: Mike Salvatore discovered that FlightCrew improperly handled certain malformed EPUB files. An attacker could potentially use this vulnerability to cause a denial of service. (CVE-2019-13032) Mike Salvatore discovered that FlightCrew mishandled certain malformed EPUB files. An attacker could use this vulnerability to write arbitrary files to the filesystem. (CVE-2019-13241) Mike Salvatore discovered that the version of Zipios included in FlightCrew mishandled certain malformed ZIP files. An attacker could use this vulnerability to cause a denial of service or consume system resources. (CVE-2019-13453)
References: https://ubuntu.com/security/notices/USN-4055-1, https://ubuntu.com/security/CVE-2019-13032, https://ubuntu.com/security/CVE-2019-13241, https://ubuntu.com/security/CVE-2019-13453
Affected packages
Package
Name: flightcrew
Purl: pkg:deb/ubuntu/[email protected]+dfsg-6ubuntu0.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
