Bugzilla – Bug 1218749
VUL-0: CVE-2022-48620: libuev: uev (aka libuev) before 2.4.1 has a buffer overflow in epoll_wait if maxevents is a large number.
Last modified: 2024-01-18 20:04:54 UTC
uev (aka libuev) before 2.4.1 has a buffer overflow in epoll_wait if maxevents is a large number. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-48620 https://www.cve.org/CVERecord?id=CVE-2022-48620 https://github.com/troglobit/libuev/commit/2d9f1c9ce655cc38511aeeb6e95ac30914f7aec9 https://github.com/troglobit/libuev/compare/v2.4.0...v2.4.1 https://github.com/troglobit/libuev/issues/27
SR#1138233 to devel:libraries:c_c++/libuev SR#1138234 to openSUSE_Backports_SLE-15-SP5_Update
This is an autogenerated message for OBS integration: This bug (1218749) was mentioned in https://build.opensuse.org/request/show/1138234 Backports:SLE-15-SP5 / libuev
openSUSE-SU-2024:0023-1: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 1218749 CVE References: CVE-2022-48620 JIRA References: Sources used: openSUSE Backports SLE-15-SP5 (src): libuev-2.4.1-bp155.3.3.1