Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2025.0097
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2025-0097)
Summary:The remote host is missing an update for the 'man2html' package(s) announced via the MGASA-2025-0097 advisory.
Description:Summary:
The remote host is missing an update for the 'man2html' package(s) announced via the MGASA-2025-0097 advisory.

Vulnerability Insight:
In man2html 1.6g, a specific string being read in from a file will
overwrite the size parameter in the top chunk of the heap. This at least
causes the program to segmentation abort if the heap size parameter
isn't aligned correctly. In versions before GLIBC version 2.29 and
if aligned correctly, it allows arbitrary writes anywhere in the program's
memory.

Affected Software/OS:
'man2html' package(s) on Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
4.9

CVSS Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2021-40647
https://gist.github.com/untaman/cb58123fe89fc65e3984165db5d40933
CopyrightCopyright (C) 2025 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.