libevent: Multiple vulnerabilities Multiple vulnerabilities have been found in libevent, the worst of which allows remote attackers to execute arbitrary code. libevent 2017-05-07 2017-05-07 608042 remote 2.1.7_rc 2.1.7_rc

libevent is a library to execute a function when a specific event occurs on a file descriptor.

Multiple vulnerabilities have been discovered in libevent. Please review the CVE identifiers referenced below for details.

A remote attacker could possibly execute arbitrary code with the privileges of the process, or cause a Denial of Service condition.

There is no known workaround at this time.

All libevent users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=dev-libs/libevent-2.1.7_rc"
CVE-2016-10195 CVE-2016-10196 CVE-2016-10197 BlueKnight whissi