VDB
GCVE-110-MAGEIA-2022-366
GCVE-110-MAGEIA-2022-366
Advisory Published
There are two Information Disclosure vulnerabilities in colord, and they
lie in colord/src/cd-device-db.c and colord/src/cd-profile-db.c
separately. They exist because the 'err_msg' of 'sqlite3_exec' is not
releasing after use, while libxml2 emphasizes that the caller needs to
release it. (CVE-2021-42523)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | colord | 0 (affected), 1.4.5-1.1.mga8 (unaffected) | — |
Aliases
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.