ALT-BU-2023-6124-1
Branch sisyphus_mipsel update bulletin.
Package guacamole-server updated to version 1.5.3-alt2 for branch sisyphus_mipsel.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2023-30575
Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data.
Modified: 2024-11-21
CVE-2023-30576
Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer. Depending on timing, this may allow an attacker to execute arbitrary code with the privileges of the guacd process.
Closed bugs
Не работает SSH подключение без Monospace шрифтов (Unable to load font “monospace”)
Package mc updated to version 4.8.30-alt4 for branch sisyphus_mipsel.
Closed bugs
mc должен быть собран с --enable-vfs-sftp
Package gimagereader updated to version 3.4.1-alt2 for branch sisyphus_mipsel.
Closed bugs
Пытается открывать HTML
Package calcurse updated to version 4.8.1-alt1 for branch sisyphus_mipsel.
Closed bugs
Обновление исходного кода до версии 4.8.1
Package libXpm updated to version 3.5.17-alt1 for branch sisyphus_mipsel.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2023-43787
A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.
- http://www.openwall.com/lists/oss-security/2024/01/24/9
- RHSA-2024:2145
- RHSA-2024:2145
- RHSA-2024:2973
- RHSA-2024:2973
- https://access.redhat.com/security/cve/CVE-2023-43787
- https://access.redhat.com/security/cve/CVE-2023-43787
- RHBZ#2242254
- RHBZ#2242254
- https://jfrog.com/blog/xorg-libx11-vulns-cve-2023-43786-cve-2023-43787-part-two/
- https://security.netapp.com/advisory/ntap-20231103-0006/
Package libX11 updated to version 1.8.7-alt1 for branch sisyphus_mipsel.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2023-43787
A vulnerability was found in libX11 due to an integer overflow within the XCreateImage() function. This flaw allows a local user to trigger an integer overflow and execute arbitrary code with elevated privileges.
- http://www.openwall.com/lists/oss-security/2024/01/24/9
- RHSA-2024:2145
- RHSA-2024:2145
- RHSA-2024:2973
- RHSA-2024:2973
- https://access.redhat.com/security/cve/CVE-2023-43787
- https://access.redhat.com/security/cve/CVE-2023-43787
- RHBZ#2242254
- RHBZ#2242254
- https://jfrog.com/blog/xorg-libx11-vulns-cve-2023-43786-cve-2023-43787-part-two/
- https://security.netapp.com/advisory/ntap-20231103-0006/
Package rpm updated to version 4.13.0.1-alt40 for branch sisyphus_mipsel.
Closed bugs
memory leaks in python bindings for RPM