Release Info

Advisory: CLSA-2023:1692110840

OS: Ubuntu 16.04 ELS

Public date: 2023-08-15 10:47:22

Project: unixODBC

Version: 2.3.1-4.1+tuxcare.els1

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2023-1692110840.html

Changelog

* SECURITY UPDATE: Fix buffer overflow - debian/patch/CVE-2018-7409: fix unicode_to_ansi_copy(), don't include NUL-terminator in length in unicode_to_ansi_alloc(), make sure that the error handling doesn't overrun the buffer - CVE-2018-7409

Update

Update command: apt-get update apt-get --only-upgrade install unixODBC*

Packages list

libodbc1_2.3.1-4.1+tuxcare.els1_amd64.deb odbcinst_2.3.1-4.1+tuxcare.els1_amd64.deb odbcinst1debian2_2.3.1-4.1+tuxcare.els1_amd64.deb unixodbc_2.3.1-4.1+tuxcare.els1_amd64.deb unixodbc-dev_2.3.1-4.1+tuxcare.els1_amd64.deb

CVEs

CVE-2018-7409