UbuntuUpdates.org

Package "libfcgi"

Name: libfcgi

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • FastCGI bridge from CGI
  • header files of FastCGI
  • shared library of FastCGI

Latest version: 2.4.2-2ubuntu0.1
Release: jammy (22.04)
Level: updates
Repository: main

Links



Other versions of "libfcgi" in Jammy

Repository Area Version
base main 2.4.2-2build2
security main 2.4.2-2ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.4.2-2ubuntu0.1 2025-05-06 17:07:35 UTC

  libfcgi (2.4.2-2ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Heap-based buffer overflow
    - debian/patches/CVE-2025-23016.patch: fixing integer overflow in
      libfcgi/fcgiapp.c.
    - CVE-2025-23016

 -- Leonidas Da Silva Barbosa <email address hidden> Wed, 30 Apr 2025 05:57:03 -0300

CVE-2025-23016 FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values



About   -   Send Feedback to @ubuntu_updates