| From: |
| Mageia Updates <buildsystem-daemon@mageia.org> |
| To: |
| updates-announce@ml.mageia.org |
| Subject: |
| [updates-announce] MGASA-2013-0167: Updated libraw packages fix
security vulnerability |
| Date: |
| Thu, 6 Jun 2013 21:23:52 +0200 |
| Message-ID: |
| <20130606192352.B517B4B5DB@valstar.mageia.org> |
| Archive-link: |
| Article, Thread
|
MGASA-2013-0167 - Updated libraw packages fix security vulnerability
Publication date: 06 Jun 2013
Type: security
Affected Mageia releases: 2, 3
CVE: CVE-2013-2126
Description:
A double-free error exits when handling damaged full-color within Foveon and
sRAW files in libraw before 0.15.2 (CVE-2013-2126).
References:
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2126
- http://secunia.com/advisories/53547/
- http://www.libraw.org/news/libraw-0-15-2
SRPMS:
- 3/core/libraw-0.14.7-5.1.mga3
- 2/core/libraw-0.14.5-1.1.mga2
(
Log in to post comments)