Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-0897

Опубликовано: 18 мар. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-0897: icu security update (IMPORTANT)

[50.2-4]

  • Apply ICU-13634-Adding-integer-overflow-logic-to-ICU4C-num.patch
  • Apply ICU-20958-Prevent-SEGV_MAPERR-in-append.patch
  • Resolves: rhbz#1808235

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

icu

50.2-4.el7_7

libicu

50.2-4.el7_7

libicu-devel

50.2-4.el7_7

libicu-doc

50.2-4.el7_7

Oracle Linux x86_64

icu

50.2-4.el7_7

libicu

50.2-4.el7_7

libicu-devel

50.2-4.el7_7

libicu-doc

50.2-4.el7_7

Связанные CVE

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
redhat
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
nvd
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
debian
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) ...

suse-cvrf
около 5 лет назад

Security update for icu