You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa LibRaw

Sigurnosni nedostaci programskog paketa LibRaw

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2015-d2fc332108
2015-12-07 17:40:03.177757
——————————————————————————–

Name : LibRaw
Product : Fedora 23
Version : 0.16.2
Release : 3.fc23
URL : http://www.libraw.org
Summary : Library for reading RAW files obtained from digital photo cameras
Description :
LibRaw is a library for reading RAW files obtained from digital photo
cameras (CRW/CR2, NEF, RAF, DNG, and others).

LibRaw is based on the source codes of the dcraw utility, where part of
drawbacks have already been eliminated and part will be fixed in future.

——————————————————————————–
Update Information:

Patch for CVE-2015-8366, CVE-2015-8367
——————————————————————————–
References:

[ 1 ] Bug #1287077 – CVE-2015-8367 LibRaw: Memory objects are not intialized properly [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1287077
[ 2 ] Bug #1287057 – CVE-2015-8366 LibRaw: Index overflow in smal_decode_segment [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1287057
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update LibRaw’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

 

 

 

——————————————————————————–
Fedora Update Notification
FEDORA-2015-a288773b9a
2015-12-11 21:20:33.552959
——————————————————————————–

Name        : LibRaw
Product     : Fedora 22
Version     : 0.16.2
Release     : 3.fc22
URL         : http://www.libraw.org
Summary     : Library for reading RAW files obtained from digital photo cameras
Description :
LibRaw is a library for reading RAW files obtained from digital photo
cameras (CRW/CR2, NEF, RAF, DNG, and others).

LibRaw is based on the source codes of the dcraw utility, where part of
drawbacks have already been eliminated and part will be fixed in future.

——————————————————————————–
Update Information:

Patch for CVE-2015-8366, CVE-2015-8367
——————————————————————————–
References:

  [ 1 ] Bug #1287077 – CVE-2015-8367 LibRaw: Memory objects are not intialized properly [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1287077
  [ 2 ] Bug #1287057 – CVE-2015-8366 LibRaw: Index overflow in smal_decode_segment [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1287057
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update LibRaw’ at the command line.
For more information, refer to “Managing Software with yum”,
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorMarko Stanec
Cert idNCERT-REF-2015-12-0020-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Višestruke ranjivosti programske biblioteke libxml2

Otkrivene su višestruke ranjivosti u programskoj biblioteci libxml2 za RHEL 7. Potencijalni udaljeni napadač ranjivosti bi mogao iskoristiti za rušenje...

Close