From 019ef9c7a76962c3218848c8dbd18ca8052f031e Mon Sep 17 00:00:00 2001 From: John Helmert III Date: Fri, 23 Jul 2021 22:07:25 -0500 Subject: [ GLSA 202107-54 ] libyang: Multiple vulnerabilities Signed-off-by: John Helmert III --- glsa-202107-54.xml | 50 ++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 50 insertions(+) create mode 100644 glsa-202107-54.xml (limited to 'glsa-202107-54.xml') diff --git a/glsa-202107-54.xml b/glsa-202107-54.xml new file mode 100644 index 00000000..83bb578e --- /dev/null +++ b/glsa-202107-54.xml @@ -0,0 +1,50 @@ + + + + libyang: Multiple vulnerabilities + Multiple vulnerabilities have been found in libyang, the worst of + which could result in a Denial of Service condition. + + libyang + 2021-07-24 + 2021-07-24 + 791373 + remote + + + 1.0.236 + 1.0.236 + + + +

YANG data modeling language library.

+
+ +

Multiple vulnerabilities have been discovered in libyang. Please review + the CVE identifiers referenced below for details. +

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All libyang users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-libs/libyang-1.0.236" + +
+ + CVE-2021-28902 + CVE-2021-28903 + CVE-2021-28904 + CVE-2021-28905 + CVE-2021-28906 + + ajak + ajak +
-- cgit v1.2.3-65-gdbad