Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2021:1174-1

Опубликовано: 21 авг. 2021
Источник: suse-cvrf

Описание

Security update for libass

This update for libass fixes the following issues:

  • CVE-2020-36430: Fixed heap-based buffer overflow in decode_chars (bsc#1188539).

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.2
libass-devel-0.14.0-lp152.4.9.1
libass9-0.14.0-lp152.4.9.1
libass9-32bit-0.14.0-lp152.4.9.1

Описание

libass 0.15.x before 0.15.1 has a heap-based buffer overflow in decode_chars (called from decode_font and process_text) because the wrong integer data type is used for subtraction.


Затронутые продукты
openSUSE Leap 15.2:libass-devel-0.14.0-lp152.4.9.1
openSUSE Leap 15.2:libass9-0.14.0-lp152.4.9.1
openSUSE Leap 15.2:libass9-32bit-0.14.0-lp152.4.9.1

Ссылки