CVE-2024-54662

Asked by Igor Medovolkin

Hello,

There is a known vulnerability in dante 1.4.0 through 1.4.3.

https://ubuntu.com/security/CVE-2024-54662
https://www.inet.no/dante/advisory-2024-12-16.txt

Fixed version 1.4.4 is already released (publicly available since 16.12.2024).

https://www.inet.no/dante/files/dante-1.4.4.tar.gz

(not yet listed on the Download page - I asked the developers to provide the checksum for this release).

Thank you,
Igor

Question information

Language:
English Edit question
Status:
Solved
For:
Ubuntu dante Edit question
Assignee:
No assignee Edit question
Solved by:
actionparsnip
Solved:
Last query:
Last reply:
Revision history for this message
Igor Medovolkin (igor-aka-igro) said :
#1

The link and the checksum have been added to the download page:
https://www.inet.no/dante/download.html

Revision history for this message
Best actionparsnip (andrew-woodhead666) said :
#2

All i can suggest is report a bug. Mark it as a security bug

Revision history for this message
Igor Medovolkin (igor-aka-igro) said :
#3

Thanks actionparsnip, that solved my question.