Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:02816-1

Опубликовано: 15 авг. 2025
Источник: suse-cvrf

Описание

Security update for libavif

This update for libavif fixes the following issues:

  • update to 1.3.0:
  • CVE-2025-48175: Fixed an integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes. (bsc#1243270)
  • CVE-2025-48174: Fixed an integer overflow and resultant buffer overflow in stream->offset+size. (bsc#1243269)

Список пакетов

SUSE Linux Enterprise Module for Basesystem 15 SP7
libavif16-1.3.0-150700.3.6.1

Описание

In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.


Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP7:libavif16-1.3.0-150700.3.6.1

Ссылки

Описание

In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.


Затронутые продукты
SUSE Linux Enterprise Module for Basesystem 15 SP7:libavif16-1.3.0-150700.3.6.1

Ссылки