AVG-1934 log

Package lout
Status Fixed
Severity Medium
Type arbitrary code execution
Affected 3.40-2
Fixed 3.41-1
Current 3.42.2-1 [extra]
Ticket FS#70758
Created Sat May 8 19:41:15 2021
Issue Severity Remote Type Description
CVE-2019-19918 Medium No Arbitrary code execution
Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c.
CVE-2019-19917 Medium No Arbitrary code execution
Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c.