Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-2980

Опубликовано: 23 мая 2024
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2024-2980: harfbuzz security update (MODERATE)

[1.7.5-4]

  • Resolves:RHEL-8400 allows attackers to trigger O(n^2) growth via consecutive marks

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

harfbuzz

1.7.5-4.el8

harfbuzz-devel

1.7.5-4.el8

harfbuzz-icu

1.7.5-4.el8

Oracle Linux x86_64

harfbuzz

1.7.5-4.el8

harfbuzz-devel

1.7.5-4.el8

harfbuzz-icu

1.7.5-4.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
redhat
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
nvd
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 2 лет назад

hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to ...

Уязвимость ELSA-2024-2980