LibRaw-0.19.4-2.el7

エラータID: AXSA:2024-7453:01

Release date: 
Wednesday, January 24, 2024 - 05:31
Subject: 
LibRaw-0.19.4-2.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
Moderate
Description: 

LibRaw is a library for reading RAW files obtained from digital photo cameras (CRW/CR2, NEF, RAF, DNG, and others).

Security Fix(es):

* LibRaw: stack buffer overflow in LibRaw_buffer_datastream::gets() in src/libraw_datastream.cpp (CVE-2021-32142)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2021-32142
Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_datastream::gets(char*, int) in /src/libraw/src/libraw_datastream.cpp.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. LibRaw-0.19.4-2.el7.src.rpm
    MD5: d83bd5d9f78f5251506b51dcec5f37c8
    SHA-256: f18702ad527058c774997ff73956ea210d094adcc0528bb78cc8c15771348d43
    Size: 1.25 MB

Asianux Server 7 for x86_64
  1. LibRaw-0.19.4-2.el7.i686.rpm
    MD5: 9d1a680725c636df450455a193a4d6cd
    SHA-256: 1276c1a84f097f1d3e48c1dd2bf6d57d2357cc3cd9956a99a814cf7906e66711
    Size: 303.54 kB
  2. LibRaw-0.19.4-2.el7.x86_64.rpm
    MD5: 5621556b605ebd4f1905d7dad378b15c
    SHA-256: a4f60605a73ebcb865d42bf66f5aca7e9ce18067652c26585806ac0174636474
    Size: 307.64 kB