ALT-PU-2023-3282-1

Обновление пакета openscad в ветке p10_e2k

Версия2021.01-alt4.1
Задание#0
Опубликовано2023-04-26
Макс. серьёзностьHIGH
Серьёзность:

Закрытые проблемы (2)

CVE-2022-0496
MEDIUM5.5

A vulnerbiility was found in Openscad, where a DXF-format drawing with particular (not necessarily malformed!) properties may cause an out-of-bounds memory access when imported using import().

Опубликовано: 2022-08-29Изменено: 2024-11-21
CVSS 3.xСРЕДНЯЯ 5.5
CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVE-2022-0497
HIGH7.1

A vulnerbiility was found in Openscad, where a .scad file with no trailing newline could cause an out-of-bounds read during parsing of annotations.

Опубликовано: 2022-08-29Изменено: 2024-11-21
CVSS 3.xВЫСОКАЯ 7.1
CVSS:3.x/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H