gdk-pixbuf2-2.36.12-6.el8
エラータID: AXSA:2024-8192:01
リリース日:
2024/06/14 Friday - 22:46
題名:
gdk-pixbuf2-2.36.12-6.el8
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- GdkPixbuf の ANI 形式の gdk_pixbuf_set_option() 関数の
アニメーションカーソルデータの解析処理には、ヒープ領域
の範囲外書き込みの問題があるため、ローカルの攻撃者により、
細工された ANI 形式のデータを介して、任意のコードの実行、
およびサービス拒否攻撃を可能とする脆弱性が存在します。
(CVE-2022-48622)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2022-48622
In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_load_chunk in io-ani.c) when parsing chunks in a crafted .ani file. A crafted file could allow an attacker to overwrite heap metadata, leading to a denial of service or code execution attack. This occurs in gdk_pixbuf_set_option() in gdk-pixbuf.c.
In GNOME GdkPixbuf (aka gdk-pixbuf) through 2.42.10, the ANI (Windows animated cursor) decoder encounters heap memory corruption (in ani_load_chunk in io-ani.c) when parsing chunks in a crafted .ani file. A crafted file could allow an attacker to overwrite heap metadata, leading to a denial of service or code execution attack. This occurs in gdk_pixbuf_set_option() in gdk-pixbuf.c.
追加情報:
N/A
ダウンロード:
SRPMS
- gdk-pixbuf2-2.36.12-6.el8.src.rpm
MD5: e5357f90ef895286205343a474a6aad8
SHA-256: d556b6769da6e4154f20ecc4587f740d9dec2702f49aaeaf1cac006ee2b11de8
Size: 5.52 MB
Asianux Server 8 for x86_64
- gdk-pixbuf2-2.36.12-6.el8.i686.rpm
MD5: d1504817a8747301649a956037c1beb6
SHA-256: a568b6db8047d13e1a40a8f163f6ed7c6a43d423e5a79e5c8157f67860441d16
Size: 472.61 kB - gdk-pixbuf2-2.36.12-6.el8.x86_64.rpm
MD5: 410fa57a918221a958f1764cf7e70204
SHA-256: 8a3ad0764d1ab09c677a6c2fbda04f47d1526bb40bcde8f9c06467a4d8bcc9ad
Size: 465.21 kB - gdk-pixbuf2-devel-2.36.12-6.el8.i686.rpm
MD5: a893e33ab7175e764c011833f68e3fc9
SHA-256: 1525a625591fd99f13d429d0aa4942b085ffbad4362f9dcc69b9967634f4d1d7
Size: 221.49 kB - gdk-pixbuf2-devel-2.36.12-6.el8.x86_64.rpm
MD5: 183d41cd127bf9d119afe6d011d20d70
SHA-256: 3dac215823ab8b588bc0e255f4ad54c204ee7c4113914480342d1861b93d8ff5
Size: 221.45 kB - gdk-pixbuf2-modules-2.36.12-6.el8.i686.rpm
MD5: c25763f2b7b239e8d296638a2ef0da77
SHA-256: 43f3859d76e2474a411c6bc292b26c158226943e3c715e3fc502cb3a4535efe9
Size: 112.23 kB - gdk-pixbuf2-modules-2.36.12-6.el8.x86_64.rpm
MD5: c6d373a41a835d020224dc68b3060a2e
SHA-256: 179022152f4a1581f6d1838bc51c56c391d9f76e09f229c3389c3cd9244fee03
Size: 107.62 kB - gdk-pixbuf2-xlib-2.36.12-6.el8.i686.rpm
MD5: c4ad0fd14c957aca5d9d39993e59b19c
SHA-256: c0de38461b1001aea01a5082392a69361027cab617b113a8a0758b74d228a01b
Size: 53.84 kB - gdk-pixbuf2-xlib-2.36.12-6.el8.x86_64.rpm
MD5: fc52f80d817c426ebfee871be471a8b1
SHA-256: 72aaa3cb92c2985cf77eb22ddae26e568412cc7d75823918648a5194130c77fc
Size: 53.41 kB - gdk-pixbuf2-xlib-devel-2.36.12-6.el8.i686.rpm
MD5: 402d6f8f41c1124a70b9fc8032979bce
SHA-256: 12449596444da4e9f49b905bcf112f2a9bdd423ce97edb6c208557e667cc82a7
Size: 20.38 kB - gdk-pixbuf2-xlib-devel-2.36.12-6.el8.x86_64.rpm
MD5: 4318670bc26fe8f97c1b55d679504797
SHA-256: 2f19a16cd647194fa7dc2e6cec8aa19c8992c10d9ce4b677de39aca8f267b8db
Size: 20.36 kB