Your submission was sent successfully! Close

USN-4066-1: libmspack vulnerability

18 July 2019

libmspack could be made to expose sensitive information if it received a specially crafted CHM file.



  • libmspack - library for Microsoft compression formats


It was discovered that libmspack incorrectly handled certain CHM files.
A remote attacker could possibly use this issue to access sensitive information.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 18.04
Ubuntu 16.04

In general, a standard system update will make all the necessary changes.


Related notices

  • USN-4066-2: clamav-daemon, clamav-milter, libclamav-dev, libclamav7, clamav, clamav-freshclam, clamav-base, clamav-docs, clamav-testfiles