Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2020:0902

Опубликовано: 19 мар. 2020
Источник: rocky
Оценка: Important

Описание

Important: icu security update

The International Components for Unicode (ICU) library provides robust and full-featured Unicode services.

Security Fix(es):

  • ICU: Integer overflow in UnicodeString::doAppend() (CVE-2020-10531)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
icux86_642.el8_1icu-60.3-2.el8_1.x86_64.rpm
libicux86_642.el8_1libicu-60.3-2.el8_1.x86_64.rpm
libicu-develx86_642.el8_1libicu-devel-60.3-2.el8_1.x86_64.rpm
libicu-docnoarch2.el8_1libicu-doc-60.3-2.el8_1.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
redhat
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
nvd
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.

CVSS3: 8.8
debian
больше 5 лет назад

An issue was discovered in International Components for Unicode (ICU) ...

suse-cvrf
около 5 лет назад

Security update for icu