libksba: security bump to version 1.3.3
Fixes (no CVEs assigned yet): * integer overflow in the DN decoder src/dn.c (append_quoted, append_atv) * integer overflow in the BER decoder src/ber-decoder.c (ber_decoder_s) * denial of service due to stack overflow in src/ber-decoder.c (push_decoder_state, pop_decoder_state) Signed-off-by:Gustavo Zacarias <gustavo@zacarias.com.ar> Signed-off-by:
Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
Loading
Please register or sign in to comment