ELA-180-1 aspell security update

buffer over-read

2019-10-21
Packageaspell
Version0.60.7~20110707-1+deb7u1
Related CVEs CVE-2019-17544


GNU Aspell, a spell-checker, is vulnerable to a stack-based buffer over-read via an isolated \ character when processing a configuration file.



For Debian 7 Wheezy, these problems have been fixed in version 0.60.7~20110707-1+deb7u1.

We recommend that you upgrade your aspell packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.