Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-4709

Опубликовано: 10 нояб. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-4709: librsvg2 security update (MODERATE)

[2.42.7-4]

  • Resolves: rhbz#1804519 Add patch for CVE-2019-20446

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

librsvg2

2.42.7-4.el8

librsvg2-devel

2.42.7-4.el8

librsvg2-tools

2.42.7-4.el8

Oracle Linux x86_64

librsvg2

2.42.7-4.el8

librsvg2-devel

2.42.7-4.el8

librsvg2-tools

2.42.7-4.el8

Связанные CVE

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 5 лет назад

In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processing. The attacker constructs pattern elements so that the number of final rendered objects grows exponentially.

CVSS3: 6.5
redhat
больше 5 лет назад

In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processing. The attacker constructs pattern elements so that the number of final rendered objects grows exponentially.

CVSS3: 6.5
nvd
больше 5 лет назад

In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processing. The attacker constructs pattern elements so that the number of final rendered objects grows exponentially.

CVSS3: 6.5
debian
больше 5 лет назад

In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nest ...

suse-cvrf
больше 5 лет назад

Security update for librsvg