MGASA-2020-0398

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 08 Nov 2020, 14:14
Last modified:16 Apr 2026, 04:25

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

08 Nov 2020, 14:14
Published
Vulnerability first disclosed
16 Apr 2026, 04:25
Last Modified
Vulnerability information updated

Description

Updated libuv packages a fix security vulnerability The implementation of realpath in libuv before 1.39 incorrectly determined the buffer size which can result in a buffer overflow if the resolved path is longer than 256 bytes (CVE-2020-8252).

Affected Systems

  • mageialibuv

    < 1.34.2-1.1.mga7

References (4)