Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:3066

Опубликовано: 14 июн. 2024
Источник: rocky
Оценка: Moderate

Описание

Moderate: exempi security update

Exempi provides a library for easy parsing of XMP metadata.

Security Fix(es):

  • exempi: denial of service via opening of crafted audio file with ID3V2 frame (CVE-2020-18651)

  • exempi: denial of service via opening of crafted webp file (CVE-2020-18652)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.10 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
exempix86_644.el8exempi-2.4.5-4.el8.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

oracle-oval
около 1 года назад

ELSA-2024-3066: exempi security update (MODERATE)

CVSS3: 6.5
ubuntu
почти 2 года назад

Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and earlier allows remote attackers to cause a denial of service via opening of crafted webp file.

CVSS3: 6.5
redhat
почти 2 года назад

Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and earlier allows remote attackers to cause a denial of service via opening of crafted webp file.

CVSS3: 6.5
nvd
почти 2 года назад

Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and earlier allows remote attackers to cause a denial of service via opening of crafted webp file.

CVSS3: 6.5
debian
почти 2 года назад

Buffer Overflow vulnerability in WEBP_Support.cpp in exempi 2.5.0 and ...