In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Centos:6
libgsf-devel
.
Note: Versions mentioned in the description apply only to the upstream libgsf-devel
package and not the libgsf-devel
package as distributed by Centos
.
See How to fix?
for Centos:6
relevant fixed versions and status.
A vulnerability was found in GNOME libgsf up to 1.14.53. It has been rated as critical. This issue affects the function gsf_property_settings_collec. The manipulation of the argument n_alloced_params leads to heap-based buffer overflow. Attacking locally is a requirement. The vendor was contacted early about this disclosure but did not respond in any way.