Source: flightcrew
Version: 0.7.2+dfsg-13
Severity: important
Tags: security upstream
Forwarded: https://github.com/Sigil-Ebook/flightcrew/issues/53
Control: found -1 0.7.2+dfsg-9

Hi,

The following vulnerability was published for flightcrew.

CVE-2019-13032[0]:
| An issue was discovered in FlightCrew v0.9.2 and earlier. A NULL
| pointer dereference occurs in GetRelativePathToNcx() or
| GetRelativePathsToXhtmlDocuments() when a NULL pointer is passed to
| xc::XMLUri::isValidURI(). This affects third-party software (not
| Sigil) that uses FlightCrew as a library.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2019-13032
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-13032
[1] https://github.com/Sigil-Ebook/flightcrew/issues/53

Regards,
Salvatore

Reply via email to