libcdio-0.92-3.0.1.el7.AXS7
エラータID: AXSA:2024-8818:01
Release date:
Friday, September 20, 2024 - 17:11
Subject:
libcdio-0.92-3.0.1.el7.AXS7
Affected Channels:
Asianux Server 7 for x86_64
Severity:
High
Description:
This library provides an interface for CD-ROM access. It can be used by
applications that need OS- and device-independent access to CD-ROM devices.
Security Fix(es):
* CVE-2024-36600: Allocate more space for buffer, prevent overflow,
CVE(s):
CVE-2024-36600
Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to execute arbitrary code via a crafted ISO 9660 image file.
Solution:
Update packages.
CVEs:
CVE-2024-36600
Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to execute arbitrary code via a crafted ISO 9660 image file.
Buffer Overflow Vulnerability in libcdio v2.1.0 allows an attacker to execute arbitrary code via a crafted ISO 9660 image file.
Additional Info:
N/A
Download:
Asianux Server 7 for x86_64
- libcdio-0.92-3.0.1.el7.AXS7.i686.rpm
MD5: ce36a2260d5d2aa196760df0456fb0f3
SHA-256: b8a48f6f90c74599a86960e887a9fd4f27feae39a6f85bead1b4b8e69386bbac
Size: 235.71 kB - libcdio-0.92-3.0.1.el7.AXS7.x86_64.rpm
MD5: c2610e34ad8082676dcdf3c400ac56fd
SHA-256: 2fc119d3eb27208ac61617b737f03b3ebbf7d95b5cd068731f403fa88e876888
Size: 235.13 kB