Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-2902

Опубликовано: 14 июл. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-2902: sane-backends security update (IMPORTANT)

[1.0.27-19.1]

  • 1852468, 1852467, 1852466, 1852465 - prevent buffer overflow in esci2_img
  • 1852668, 1852667, 1852666, 1852665 - disable autodiscovery for epsonds backend

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

sane-backends

1.0.27-19.el8_2.1

sane-backends-daemon

1.0.27-19.el8_2.1

sane-backends-devel

1.0.27-19.el8_2.1

sane-backends-doc

1.0.27-19.el8_2.1

sane-backends-drivers-cameras

1.0.27-19.el8_2.1

sane-backends-drivers-scanners

1.0.27-19.el8_2.1

sane-backends-libs

1.0.27-19.el8_2.1

Oracle Linux x86_64

sane-backends

1.0.27-19.el8_2.1

sane-backends-daemon

1.0.27-19.el8_2.1

sane-backends-devel

1.0.27-19.el8_2.1

sane-backends-doc

1.0.27-19.el8_2.1

sane-backends-drivers-cameras

1.0.27-19.el8_2.1

sane-backends-drivers-scanners

1.0.27-19.el8_2.1

sane-backends-libs

1.0.27-19.el8_2.1

Связанные CVE

Связанные уязвимости

suse-cvrf
почти 5 лет назад

Security update for sane-backends

suse-cvrf
почти 5 лет назад

Security update for sane-backends

suse-cvrf
почти 5 лет назад

Security update for sane-backends

suse-cvrf
почти 5 лет назад

Security update for sane-backends

CVSS3: 8
ubuntu
около 5 лет назад

A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-084.