An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeOwner.
CPE | Name | Operator | Version |
---|---|---|---|
debian_linux | eq | 9.0 | |
debian_linux | eq | 10.0 | |
debian_linux | eq | 11.0 | |
extra_packages_for_enterprise_linux | eq | 8.0 | |
fedora | eq | 34 | |
fedora | eq | 35 | |
backports | eq | sle-15 | |
leap | eq | 15.3 | |
uriparser | lt | 0.9.6 |
blog.hartwork.org/posts/uriparser-096-with-security-fixes-released/
github.com/uriparser/uriparser/issues/121
github.com/uriparser/uriparser/pull/124
lists.debian.org/debian-lts-announce/2022/01/msg00029.html
lists.fedoraproject.org/archives/list/[email protected]/message/MO6T7WA27H7K3WI2AXUAGPWBGK4HM65D/
lists.fedoraproject.org/archives/list/[email protected]/message/YGIJTDNEMU2V4H3JJBQVKBRHU5GBQKG2/
www.debian.org/security/2022/dsa-5063