Summary: | <media-libs/libemf-1.0.12: Multiple vulnerabilities (CVE-2020-{11863,11864,11865,11866}) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | maintainer-needed, pacho |
Priority: | Normal | Flags: | nattka:
sanity-check-
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://sourceforge.net/p/libemf/news/2020/05/re-release-of-libemf-1012/ | ||
Whiteboard: | B3 [noglsa cve] | ||
Package list: |
=media-libs/libemf-1.0.12 amd64 x86 ppc ppc64 sparc
|
Runtime testing required: | --- |
Bug Depends on: | 728806 | ||
Bug Blocks: |
Description
GLSAMaker/CVETool Bot
2020-05-11 17:18:02 UTC
* CVE-2020-11863 Description: "libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2)." * CVE-2020-11864 Description: "libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2)." * CVE-2020-11865 Description: "libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows out-of-bounds memory access." * CVE-2020-1866 Description: "libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows a use-after-free." *** Bug 724442 has been marked as a duplicate of this bug. *** Unable to check for sanity:
> package masked: media-libs/libemf-1.0.12, by keywords: -arm
Unable to check for sanity:
> package masked: media-libs/libemf-1.0.12, by keywords: -arm
All sanity-check issues have been resolved Unable to check for sanity:
> package masked: media-libs/libemf-1.0.12, by keywords: -arm
Unable to check for sanity:
> package masked: media-libs/libemf-1.0.12, by keywords: -arm
ppc/ppc64 stable All sanity-check issues have been resolved sparc stable We'll stable in bug 728806 instead. Unable to check for sanity:
> dependent bug #728806 is missing keywords
Unable to check for sanity:
> no match for package: =media-libs/libemf-1.0.12
|