graphviz-2.40.1-43.el8

エラータID: AXSA:2021-2661:01

Release date: 
Sunday, December 12, 2021 - 08:01
Subject: 
graphviz-2.40.1-43.el8
Affected Channels: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

Graphviz is open-source graph-visualization software. Graph visualization is a way of representing structural information as diagrams of abstract graphs and networks. It has important applications in networking, bioinformatics, software engineering, database and web design, machine learning, and in visual interfaces for other technical domains.

Security Fix(es):

* graphviz: off-by-one in parse_reclbl() in lib/common/shapes.c (CVE-2020-18032)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2020-18032
Buffer Overflow in Graphviz Graph Visualization Tools from commit ID f8b9e035 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by loading a crafted file into the "lib/common/shapes.c" component.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. graphviz-2.40.1-43.el8.src.rpm
    MD5: f760e9b583e341175860df471c636750
    SHA-256: 78dc3799f79da3b0561574d9e1ca6052485c97ac88e01d2c2dd3282c3774b5db
    Size: 25.16 MB

Asianux Server 8 for x86_64
  1. graphviz-2.40.1-43.el8.x86_64.rpm
    MD5: c8ead2cbc4b8113f22ba0a9b9159b86e
    SHA-256: 14114037b171ee04a9499440e92a7542f8d9331e305180b5465005afc486e93f
    Size: 1.74 MB
  2. graphviz-devel-2.40.1-43.el8.x86_64.rpm
    MD5: 633a93a66630d5111b0ba127eca179e0
    SHA-256: 7a57ea6112f8f3b94dc8e442789828e8e95a73fb03beac6f1e8b64bc31a6856b
    Size: 94.66 kB
  3. graphviz-doc-2.40.1-43.el8.x86_64.rpm
    MD5: 794dbda261aa1583a45350d84caf66c7
    SHA-256: 87758744b3d5fee0756884de96ae052d1841db1617d18137718b603cebb8a0e5
    Size: 4.04 MB
  4. graphviz-gd-2.40.1-43.el8.x86_64.rpm
    MD5: d3773acfdf48b6ce6499eeb7a8e89d7d
    SHA-256: 204b9c1b11490a35146d47a65075120bbd00a9360eccb032bf6b8c10c87aefa0
    Size: 46.49 kB
  5. graphviz-python3-2.40.1-43.el8.x86_64.rpm
    MD5: dd9e4411d08dd485da170d73870ed62b
    SHA-256: c75690e030641c56d69496765c4bbcbc444e88b0fda84255b0c28d2ab4bb5455
    Size: 61.95 kB
  6. graphviz-2.40.1-43.el8.i686.rpm
    MD5: db83f7eb807df771236c35a67f368b55
    SHA-256: cdd2d3460b1286b0c00867b8a2069d98003ea2f35db578af468686862aee902d
    Size: 1.93 MB
  7. graphviz-devel-2.40.1-43.el8.i686.rpm
    MD5: f830ea31f88874097e6542b1b872a206
    SHA-256: 98baa167d16a7adbfc0edb47688334b0f4e5b26324f18673eb3d85146027ddcb
    Size: 94.54 kB
  8. graphviz-gd-2.40.1-43.el8.i686.rpm
    MD5: fcc7191f9e9e9fc2c68a02c2a74ea967
    SHA-256: dbb186b32079bc4b10aa738102d774956b4fe405060cac36bfbd1d24da14b771
    Size: 50.64 kB