ALT-BU-2014-2563-1
Branch p7 update bulletin.
Closed vulnerabilities
BDU:2015-09729
Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
Modified: 2024-11-21
CVE-2013-1439
The "faster LJPEG decoder" in libraw 0.13.x, 0.14.x, and 0.15.x before 0.15.4 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted photo file.
- DSA-2748
- DSA-2748
- [oss-security] 20130829 [notification] libraw: multiple denial of service vulnerabilities
- [oss-security] 20130829 [notification] libraw: multiple denial of service vulnerabilities
- https://github.com/LibRaw/LibRaw/commit/11909cc59e712e09b508dda729b99aeaac2b29ad
- https://github.com/LibRaw/LibRaw/commit/11909cc59e712e09b508dda729b99aeaac2b29ad
Modified: 2024-11-21
CVE-2013-2126
Multiple double free vulnerabilities in the LibRaw::unpack function in libraw_cxx.cpp in LibRaw before 0.15.2 allow context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a malformed full-color (1) Foveon or (2) sRAW image file.
- openSUSE-SU-2013:1083
- openSUSE-SU-2013:1083
- openSUSE-SU-2013:1085
- openSUSE-SU-2013:1085
- 53547
- 53547
- 53883
- 53883
- 53888
- 53888
- 53938
- 53938
- http://www.libraw.org/news/libraw-0-15-2
- http://www.libraw.org/news/libraw-0-15-2
- [oss-security] 20130529 Re: CVE request: libraw: multiple issues
- [oss-security] 20130529 Re: CVE request: libraw: multiple issues
- [oss-security] 20130610 Re: CVE request: libraw: multiple issues
- [oss-security] 20130610 Re: CVE request: libraw: multiple issues
- USN-1884-1
- USN-1884-1
- USN-1885-1
- USN-1885-1
- https://github.com/LibRaw/LibRaw/commit/19ffddb0fe1a4ffdb459b797ffcf7f490d28b5a6
- https://github.com/LibRaw/LibRaw/commit/19ffddb0fe1a4ffdb459b797ffcf7f490d28b5a6
Modified: 2024-11-21
CVE-2013-2127
Buffer overflow in the exposure correction code in LibRaw before 0.15.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
- 53547
- 53547
- http://www.libraw.org/news/libraw-0-15-1
- http://www.libraw.org/news/libraw-0-15-1
- [oss-security] 20130529 Re: CVE request: libraw: multiple issues
- [oss-security] 20130529 Re: CVE request: libraw: multiple issues
- https://github.com/LibRaw/LibRaw/commit/2f912f5b33582961b1cdbd9fd828589f8b78f21d
- https://github.com/LibRaw/LibRaw/commit/2f912f5b33582961b1cdbd9fd828589f8b78f21d
Closed bugs
Обновить до >= 0.15
Closed vulnerabilities
BDU:2019-03979
Уязвимость функции ASF_ReadObject_file_properties (modules/demux/asf/libasf.c) программы-медиапроигрывателя VideoLAN VLC, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2014-1684
The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Player before 2.1.3 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a zero minimum and maximum data packet size in an ASF file.
- http://git.videolan.org/gitweb.cgi/vlc.git/?p=vlc.git%3Ba=commitdiff%3Bh=98787d0843612271e99d62bee0dfd8197f0cf404
- http://git.videolan.org/gitweb.cgi/vlc.git/?p=vlc.git%3Ba=commitdiff%3Bh=98787d0843612271e99d62bee0dfd8197f0cf404
- http://www.elsherei.com/?p=269
- http://www.elsherei.com/?p=269
- GLSA-201603-08
- GLSA-201603-08
- https://trac.videolan.org/vlc/ticket/10482
- https://trac.videolan.org/vlc/ticket/10482
Package LibreOffice4 updated to version 4.1-alt8.M70P.1 for branch p7 in task 113543.
Closed bugs
Прошу добавить оффлайн справку в LibreOffice
Не проигрывает звук, не вставляет видео