Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2022:0068-1

Опубликовано: 02 мар. 2022
Источник: suse-cvrf

Описание

Security update for shapelib

This update for shapelib fixes the following issues:

  • CVE-2022-0699: Fixed a Double-free vulnerability in contrib/shpsort.c

Список пакетов

SUSE Package Hub 15 SP3
libshp-devel-1.5.0-bp153.2.3.1
libshp2-1.5.0-bp153.2.3.1
shapelib-1.5.0-bp153.2.3.1
openSUSE Leap 15.3
libshp-devel-1.5.0-bp153.2.3.1
libshp2-1.5.0-bp153.2.3.1
shapelib-1.5.0-bp153.2.3.1

Описание

A double-free condition exists in contrib/shpsort.c of shapelib 1.5.0 and older releases. This issue may allow an attacker to cause a denial of service or have other unspecified impact via control over malloc.


Затронутые продукты
SUSE Package Hub 15 SP3:libshp-devel-1.5.0-bp153.2.3.1
SUSE Package Hub 15 SP3:libshp2-1.5.0-bp153.2.3.1
SUSE Package Hub 15 SP3:shapelib-1.5.0-bp153.2.3.1
openSUSE Leap 15.3:libshp-devel-1.5.0-bp153.2.3.1

Ссылки