Package: udfclient
Version: 0.8.7-1

UDFClient has its own implementation of strlcpy function as standard 
glibc in libc.so does not provide one. But this implementation in 
UDFClient prior to version 0.8.8 has buffer overflow defect and writes 
more characters as buffer size.

Mitre assigned CVE-2017-8305 for this issue.

-- 
Pali Rohár
pali.ro...@gmail.com

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to