[USN-3228-1] libevent vulnerabilities

Severity Medium
Affected Packages 12
CVEs 3

Several security issues were fixed in libevent.

Guido Vranken discovered that libevent incorrectly handled memory when
processing certain data. A remote attacker could possibly use this issue
with an application that uses libevent to cause a denial of service, or
possibly execute arbitrary code.

Package Affected Version
pkg:deb/ubuntu/libevent-pthreads-2.0-5?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-pthreads-2.0-5?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
pkg:deb/ubuntu/libevent-openssl-2.0-5?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-openssl-2.0-5?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
pkg:deb/ubuntu/libevent-extra-2.0-5?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-extra-2.0-5?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
pkg:deb/ubuntu/libevent-dev?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-dev?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
pkg:deb/ubuntu/libevent-core-2.0-5?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-core-2.0-5?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
pkg:deb/ubuntu/libevent-2.0-5?distro=xenial < 2.0.21-stable-2ubuntu0.16.04.1
pkg:deb/ubuntu/libevent-2.0-5?distro=trusty < 2.0.21-stable-1ubuntu1.14.04.2
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/libevent-pthreads-2.0-5?distro=xenial ubuntu libevent-pthreads-2.0-5 < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-pthreads-2.0-5?distro=trusty ubuntu libevent-pthreads-2.0-5 < 2.0.21-stable-1ubuntu1.14.04.2 trusty
Affected pkg:deb/ubuntu/libevent-openssl-2.0-5?distro=xenial ubuntu libevent-openssl-2.0-5 < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-openssl-2.0-5?distro=trusty ubuntu libevent-openssl-2.0-5 < 2.0.21-stable-1ubuntu1.14.04.2 trusty
Affected pkg:deb/ubuntu/libevent-extra-2.0-5?distro=xenial ubuntu libevent-extra-2.0-5 < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-extra-2.0-5?distro=trusty ubuntu libevent-extra-2.0-5 < 2.0.21-stable-1ubuntu1.14.04.2 trusty
Affected pkg:deb/ubuntu/libevent-dev?distro=xenial ubuntu libevent-dev < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-dev?distro=trusty ubuntu libevent-dev < 2.0.21-stable-1ubuntu1.14.04.2 trusty
Affected pkg:deb/ubuntu/libevent-core-2.0-5?distro=xenial ubuntu libevent-core-2.0-5 < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-core-2.0-5?distro=trusty ubuntu libevent-core-2.0-5 < 2.0.21-stable-1ubuntu1.14.04.2 trusty
Affected pkg:deb/ubuntu/libevent-2.0-5?distro=xenial ubuntu libevent-2.0-5 < 2.0.21-stable-2ubuntu0.16.04.1 xenial
Affected pkg:deb/ubuntu/libevent-2.0-5?distro=trusty ubuntu libevent-2.0-5 < 2.0.21-stable-1ubuntu1.14.04.2 trusty
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...