Vulnerability Bulletins

DSA-3578 libidn - security update

   
Affected software Debian
 
It was discovered that libidn, the GNU library for InternationalizedDomain Names (IDNs), did not correctly handle invalid UTF-8 input,causing an out-of-bounds read. This could allow attackers to disclosesensitive information from an application using the libidn library.

More info:

https://www.debian.org/security/2016/dsa-3578