UbuntuUpdates.org

Package "libfcgi"

Name: libfcgi

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • FastCGI bridge from CGI
  • header files of FastCGI
  • shared library of FastCGI

Latest version: 2.4.2-2.1ubuntu0.25.04.1
Release: plucky (25.04)
Level: security
Repository: main

Links



Other versions of "libfcgi" in Plucky

Repository Area Version
base main 2.4.2-2.1build1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.4.2-2.1ubuntu0.25.04.1 2025-05-06 14:08:01 UTC

  libfcgi (2.4.2-2.1ubuntu0.25.04.1) plucky-security; urgency=medium

  * SECURITY UPDATE: Heap-based buffer overflow
    - debian/patches/CVE-2025-23016.patch: fixing integer overflow in
      libfcgi/fcgiapp.c.
    - CVE-2025-23016

 -- Leonidas Da Silva Barbosa <email address hidden> Tue, 29 Apr 2025 14:54:38 -0300

CVE-2025-23016 FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values



About   -   Send Feedback to @ubuntu_updates