Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-5081

Опубликовано: 13 сент. 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-5081: librsvg2 security update (MODERATE)

[2.50.7-1.el9_2.1]

  • Fix CVE-2023-38633 (#2224947)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

librsvg2

2.50.7-1.el9_2.1

librsvg2-devel

2.50.7-1.el9_2.1

librsvg2-tools

2.50.7-1.el9_2.1

Oracle Linux x86_64

librsvg2

2.50.7-1.el9_2.1

librsvg2-devel

2.50.7-1.el9_2.1

librsvg2-tools

2.50.7-1.el9_2.1

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local filesystem outside of the expected area), as demonstrated by href=".?../../../../../../../../../../etc/passwd" in an xi:include element.

CVSS3: 5.5
redhat
больше 2 лет назад

A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local filesystem outside of the expected area), as demonstrated by href=".?../../../../../../../../../../etc/passwd" in an xi:include element.

CVSS3: 5.5
nvd
больше 2 лет назад

A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local filesystem outside of the expected area), as demonstrated by href=".?../../../../../../../../../../etc/passwd" in an xi:include element.

CVSS3: 5.5
debian
больше 2 лет назад

A directory traversal problem in the URL decoder of librsvg before 2.5 ...

suse-cvrf
больше 2 лет назад

Security update for librsvg