libcdio-0.92-3.0.1.el7.AXS7

エラータID: AXSA:2024-8818:01

Release date: 
Friday, September 20, 2024 - 17:11
Subject: 
libcdio-0.92-3.0.1.el7.AXS7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
High
Description: 

This library provides an interface for CD-ROM access. It can be used by
applications that need OS- and device-independent access to CD-ROM devices.

Security Fix(es):

* CVE-2024-36600: Allocate more space for buffer, prevent overflow,

CVE(s):
CVE-2024-36600
Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to execute arbitrary code via a crafted ISO 9660 image file.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

Asianux Server 7 for x86_64
  1. libcdio-0.92-3.0.1.el7.AXS7.i686.rpm
    MD5: ce36a2260d5d2aa196760df0456fb0f3
    SHA-256: b8a48f6f90c74599a86960e887a9fd4f27feae39a6f85bead1b4b8e69386bbac
    Size: 235.71 kB
  2. libcdio-0.92-3.0.1.el7.AXS7.x86_64.rpm
    MD5: c2610e34ad8082676dcdf3c400ac56fd
    SHA-256: 2fc119d3eb27208ac61617b737f03b3ebbf7d95b5cd068731f403fa88e876888
    Size: 235.13 kB