Summary: | media-libs/libcaca: Heap buffer overflow (CVE-2021-{30498,30499}) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | IN_PROGRESS --- | ||
Severity: | minor | CC: | media-video |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
See Also: | https://bugs.gentoo.org/show_bug.cgi?id=772317 | ||
Whiteboard: | B3 [upstream] | ||
Package list: | Runtime testing required: | --- |
Description
Sam James
![]() ![]() ![]() ![]() * CVE-2021-30499 Description: "A flaw was found in libcaca. A buffer overflow of export.c in function export_troff might lead to memory corruption and other potential consequences." https://github.com/cacalabs/libcaca/issues/54 Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. Package list is empty or all packages have requested keywords. CVE-2022-0856 (https://github.com/cacalabs/libcaca/issues/65): libcaca is affected by a Divide By Zero issue via img2txt, which allows a remote malicious user to cause a Denial of Service CVE-2021-30498 and CVE-2021-30499 are fixed in v0.99.beta20 |