Bug#917573: libxsmm: CVE-2018-20543

Salvatore Bonaccorso carnil at debian.org
Fri Dec 28 20:12:59 GMT 2018


Source: libxsmm
Version: 1.9-1
Severity: normal
Tags: security upstream

Hi,

The following vulnerability was published for libxsmm.

CVE-2018-20543[0]:
| There is an attempted excessive memory allocation at
| libxsmm_sparse_csc_reader in generator_spgemm_csc_reader.c in LIBXSMM
| 1.10 that will cause a denial of service.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

This one probably has not been reported upstream, and consist of an
attempted excessive memory allocation.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2018-20543
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20543

Regards,
Salvatore



More information about the debian-science-maintainers mailing list