ELA-544-1 libspf2 security update

heap-based buffer overflow

2022-01-21
Packagelibspf2
Version1.2.10-5+deb8u2
Related CVEs CVE-2021-33912 CVE-2021-33913


Two issues have been found in libspf2, a library for validating mail senders with SPF. Both issues are related to heap-based buffer overflows.



For Debian 8 jessie, these problems have been fixed in version 1.2.10-5+deb8u2.

We recommend that you upgrade your libspf2 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.