Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2410

Опубликовано: 02 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-2410: harfbuzz security update (MODERATE)

[2.7.4-10]

  • Resolves:RHEL-2268 Fix CI tests results

[2.7.4-9]

  • Resolves:RHEL-2268 CVE-2023-25193

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

harfbuzz

2.7.4-10.el9

harfbuzz-devel

2.7.4-10.el9

harfbuzz-icu

2.7.4-10.el9

Oracle Linux x86_64

harfbuzz

2.7.4-10.el9

harfbuzz-devel

2.7.4-10.el9

harfbuzz-icu

2.7.4-10.el9

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
redhat
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
nvd
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to ...