Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-7639

Опубликовано: 15 нояб. 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-7639: openblas security update (MODERATE)

[0.3.15-4]

  • Fix out-of-bounds read in *larrv
  • Resolves: CVE-2021-4048

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

openblas

0.3.15-4.el8

openblas-Rblas

0.3.15-4.el8

openblas-devel

0.3.15-4.el8

openblas-openmp

0.3.15-4.el8

openblas-openmp64

0.3.15-4.el8

openblas-openmp64_

0.3.15-4.el8

openblas-serial64

0.3.15-4.el8

openblas-serial64_

0.3.15-4.el8

openblas-static

0.3.15-4.el8

openblas-threads

0.3.15-4.el8

openblas-threads64

0.3.15-4.el8

openblas-threads64_

0.3.15-4.el8

Oracle Linux x86_64

openblas

0.3.15-4.el8

openblas-Rblas

0.3.15-4.el8

openblas-devel

0.3.15-4.el8

openblas-openmp

0.3.15-4.el8

openblas-openmp64

0.3.15-4.el8

openblas-openmp64_

0.3.15-4.el8

openblas-serial64

0.3.15-4.el8

openblas-serial64_

0.3.15-4.el8

openblas-static

0.3.15-4.el8

openblas-threads

0.3.15-4.el8

openblas-threads64

0.3.15-4.el8

openblas-threads64_

0.3.15-4.el8

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 3 лет назад

An out-of-bounds read flaw was found in the CLARRV, DLARRV, SLARRV, and ZLARRV functions in lapack through version 3.10.0, as also used in OpenBLAS before version 0.3.18. Specially crafted inputs passed to these functions could cause an application using lapack to crash or possibly disclose portions of its memory.

CVSS3: 5.9
redhat
больше 3 лет назад

An out-of-bounds read flaw was found in the CLARRV, DLARRV, SLARRV, and ZLARRV functions in lapack through version 3.10.0, as also used in OpenBLAS before version 0.3.18. Specially crafted inputs passed to these functions could cause an application using lapack to crash or possibly disclose portions of its memory.

CVSS3: 9.1
nvd
больше 3 лет назад

An out-of-bounds read flaw was found in the CLARRV, DLARRV, SLARRV, and ZLARRV functions in lapack through version 3.10.0, as also used in OpenBLAS before version 0.3.18. Specially crafted inputs passed to these functions could cause an application using lapack to crash or possibly disclose portions of its memory.

CVSS3: 9.1
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 9.1
debian
больше 3 лет назад

An out-of-bounds read flaw was found in the CLARRV, DLARRV, SLARRV, an ...