graphviz-2.40.1-43.el8
エラータID: AXSA:2021-2661:01
リリース日:
2021/12/12 Sunday - 08:01
題名:
graphviz-2.40.1-43.el8
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目に対処しました。
[Security Fix]
- Graphviz には、バッファオーバーフローの問題があり、リモートの攻撃者が
巧妙に細工されたファイルを "lib/common/shapes.c" コンポーネントに読み込むことで、
任意のコード実行やサービス拒否(アプリケーションのクラッシュ)を
引き起こすことの可能な脆弱性があります。(CVE-2020-18032)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2020-18032
Buffer Overflow in Graphviz Graph Visualization Tools from commit ID f8b9e035 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by loading a crafted file into the "lib/common/shapes.c" component.
Buffer Overflow in Graphviz Graph Visualization Tools from commit ID f8b9e035 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by loading a crafted file into the "lib/common/shapes.c" component.
追加情報:
N/A
ダウンロード:
SRPMS
- graphviz-2.40.1-43.el8.src.rpm
MD5: f760e9b583e341175860df471c636750
SHA-256: 78dc3799f79da3b0561574d9e1ca6052485c97ac88e01d2c2dd3282c3774b5db
Size: 25.16 MB
Asianux Server 8 for x86_64
- graphviz-2.40.1-43.el8.x86_64.rpm
MD5: c8ead2cbc4b8113f22ba0a9b9159b86e
SHA-256: 14114037b171ee04a9499440e92a7542f8d9331e305180b5465005afc486e93f
Size: 1.74 MB - graphviz-devel-2.40.1-43.el8.x86_64.rpm
MD5: 633a93a66630d5111b0ba127eca179e0
SHA-256: 7a57ea6112f8f3b94dc8e442789828e8e95a73fb03beac6f1e8b64bc31a6856b
Size: 94.66 kB - graphviz-doc-2.40.1-43.el8.x86_64.rpm
MD5: 794dbda261aa1583a45350d84caf66c7
SHA-256: 87758744b3d5fee0756884de96ae052d1841db1617d18137718b603cebb8a0e5
Size: 4.04 MB - graphviz-gd-2.40.1-43.el8.x86_64.rpm
MD5: d3773acfdf48b6ce6499eeb7a8e89d7d
SHA-256: 204b9c1b11490a35146d47a65075120bbd00a9360eccb032bf6b8c10c87aefa0
Size: 46.49 kB - graphviz-python3-2.40.1-43.el8.x86_64.rpm
MD5: dd9e4411d08dd485da170d73870ed62b
SHA-256: c75690e030641c56d69496765c4bbcbc444e88b0fda84255b0c28d2ab4bb5455
Size: 61.95 kB - graphviz-2.40.1-43.el8.i686.rpm
MD5: db83f7eb807df771236c35a67f368b55
SHA-256: cdd2d3460b1286b0c00867b8a2069d98003ea2f35db578af468686862aee902d
Size: 1.93 MB - graphviz-devel-2.40.1-43.el8.i686.rpm
MD5: f830ea31f88874097e6542b1b872a206
SHA-256: 98baa167d16a7adbfc0edb47688334b0f4e5b26324f18673eb3d85146027ddcb
Size: 94.54 kB - graphviz-gd-2.40.1-43.el8.i686.rpm
MD5: fcc7191f9e9e9fc2c68a02c2a74ea967
SHA-256: dbb186b32079bc4b10aa738102d774956b4fe405060cac36bfbd1d24da14b771
Size: 50.64 kB