UbuntuUpdates.org

Package "dosbox"

Name: dosbox

Description:

x86 emulator with Tandy/Herc/CGA/EGA/VGA/SVGA graphics, sound and DOS

Latest version: 0.74-4.3ubuntu0.1
Release: bionic (18.04)
Level: security
Repository: universe
Homepage: http://www.dosbox.com/

Links


Download "dosbox"


Other versions of "dosbox" in Bionic

Repository Area Version
base universe 0.74-4.3
updates universe 0.74-4.3ubuntu0.1

Changelog

Version: 0.74-4.3ubuntu0.1 2022-03-30 17:06:20 UTC

  dosbox (0.74-4.3ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: code execution through buffer overflow
    - debian/patches/cve-2019-7165.patch: add boundary checks
      in shell_batch.cpp
    - CVE-2019-7165
  * SECURITY UPDATE: incorrect access control
    - debian/patches/cve-2019-12594.patch: add check function
      when opening files to prevent access to /proc content in
      include/cross.h, src/dos/dos_programs.cpp,
      src/dos/drive_fat.cpp, src/dos/drive_local.cpp and
      src/misc/cross.cpp
    - CVE-2019-12594

 -- David Fernandez Gonzalez <email address hidden> Wed, 30 Mar 2022 12:03:50 +0200

CVE-2019-7165 A buffer overflow in DOSBox 0.74-2 allows attackers to execute arbitrary code.
CVE-2019-12594 DOSBox 0.74-2 has Incorrect Access Control.



About   -   Send Feedback to @ubuntu_updates