Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:1744

Опубликовано: 18 мая 2021
Источник: rocky
Оценка: Moderate

Описание

Moderate: sane-backends security update

Scanner Access Now Easy (SANE) is a universal scanner interface. The SANE application programming interface (API) provides standardized access to any raster image scanner hardware (for example, flatbed scanners, hand-held scanners, video and still cameras, and frame-grabbers).

Security Fix(es):

  • sane-backends: NULL pointer dereference in sanei_epson_net_read function (CVE-2020-12867)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.4 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
sane-backendsx86_6422.el8sane-backends-1.0.27-22.el8.x86_64.rpm
sane-backends-daemonx86_6422.el8sane-backends-daemon-1.0.27-22.el8.x86_64.rpm
sane-backends-develx86_6422.el8sane-backends-devel-1.0.27-22.el8.x86_64.rpm
sane-backends-docnoarch22.el8sane-backends-doc-1.0.27-22.el8.noarch.rpm
sane-backends-drivers-camerasx86_6422.el8sane-backends-drivers-cameras-1.0.27-22.el8.x86_64.rpm
sane-backends-drivers-scannersx86_6422.el8sane-backends-drivers-scanners-1.0.27-22.el8.x86_64.rpm
sane-backends-libsx86_6422.el8sane-backends-libs-1.0.27-22.el8.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 5 лет назад

A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.

CVSS3: 5.7
redhat
около 5 лет назад

A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.

CVSS3: 5.5
nvd
около 5 лет назад

A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.

CVSS3: 5.5
debian
около 5 лет назад

A NULL pointer dereference in sanei_epson_net_read in SANE Backends be ...

CVSS3: 5.5
github
около 3 лет назад

A NULL pointer dereference in sanei_epson_net_read in SANE Backends through 1.0.29 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.