Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-8384

Опубликовано: 22 нояб. 2022
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2022-8384: harfbuzz security update (MODERATE)

[2.7.4-8]

  • Resolves:rh#2103849
  • Update tests.yaml

[2.7.4-7]

  • Resolves:rh#2103849 CVE-2022-33068
  • Fix Covscan compiler warning for inclusion of parenthesis
  • Update tests.yaml

[2.7.4-6]

  • Resolves:rh#2103849 CVE-2022-33068 harfbuzz: integer overflow in the component hb-ot-shape-fallback.c

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

harfbuzz

2.7.4-8.el9

harfbuzz-devel

2.7.4-8.el9

harfbuzz-icu

2.7.4-8.el9

Oracle Linux x86_64

harfbuzz

2.7.4-8.el9

harfbuzz-devel

2.7.4-8.el9

harfbuzz-icu

2.7.4-8.el9

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

CVSS3: 5.5
redhat
почти 3 года назад

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

CVSS3: 5.5
nvd
почти 3 года назад

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.

CVSS3: 5.5
debian
почти 3 года назад

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbu ...

suse-cvrf
почти 3 года назад

Security update for harfbuzz