Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-0889

Опубликовано: 20 фев. 2024
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2024-0889: oniguruma security update (MODERATE)

[6.8.2-2.1]

  • Fix CVE-2019-13224 Resolves: RHEL-6970
  • Fix CVE-2019-16163 Resolves: RHEL-9506
  • Fix CVE-2019-19012 Resolves: RHEL-9511
  • Fix CVE-2019-19203 Resolves: RHEL-9510
  • Fix CVE-2019-19204 Resolves: RHEL-9509

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

oniguruma

6.8.2-2.1.el8_9

oniguruma-devel

6.8.2-2.1.el8_9

Oracle Linux x86_64

oniguruma

6.8.2-2.1.el8_9

oniguruma-devel

6.8.2-2.1.el8_9

Связанные уязвимости

suse-cvrf
больше 2 лет назад

Security update for oniguruma

rocky
почти 5 лет назад

Moderate: php:7.3 security, bug fix, and enhancement update

oracle-oval
почти 5 лет назад

ELSA-2020-3662: php:7.3 security, bug fix, and enhancement update (MODERATE)

CVSS3: 7.5
ubuntu
больше 5 лет назад

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar pointer is dereferenced without checking if it passed the end of the matched string. This leads to a heap-based buffer over-read.

CVSS3: 7.5
redhat
больше 5 лет назад

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar pointer is dereferenced without checking if it passed the end of the matched string. This leads to a heap-based buffer over-read.