RLSA-2021:4593 --- annobinID: oval:org.secpod.oval:def:4501223 | Date: (C)2023-04-03 (M)2024-06-13 |
Class: PATCH | Family: unix |
Annobin provides a compiler plugin to annotate and tools to examine compiled binary files. Security Fix: * Developer environment: Unicode"s bidirectional override characters can cause trojan source attacks The following changes were introduced in annobin in order to facilitate detection of BiDi Unicode characters: This update of annobin adds a new annocheck test to detect the presence of multibyte characters in symbol names. For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.