An out-of-bounds read vulnerability was found in libidn due to the use of fgets with fixed-size buffer. Upstream patch: http://git.savannah.gnu.org/cgit/libidn.git/commit/?id=570e68886c41c2e765e6218cb317d9a9a447a041 CVE assignment: http://seclists.org/oss-sec/2016/q3/124
Created libidn tracking bugs for this issue: Affects: fedora-all [bug 1359146]
Created mingw-libidn tracking bugs for this issue: Affects: fedora-all [bug 1359147] Affects: epel-7 [bug 1359148]
libidn-1.33-1.fc24 has been pushed to the Fedora 24 stable repository. If problems still persist, please make note of it in this bug report.
libidn-1.33-1.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.