|
|
Subscribe / Log in / New account

Ubuntu alert USN-7227-1 (PCL)

From:  Nico Campuzano <nicolas.campuzano@canonical.com>
To:  ubuntu-security-announce@lists.ubuntu.com
Subject:  [USN-7227-1] PCL vulnerability
Date:  Thu, 23 Jan 2025 19:34:50 -0500
Message-ID:  <a295de82-6940-4bf2-ae5e-bc9bd35a2989@canonical.com>

========================================================================== Ubuntu Security Notice USN-7227-1 January 23, 2025 PCL vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: PCL could be made to crash if it received specially crafted input. Software Description: - pcl: Point Cloud Library for 2D/3D image and point cloud processing Details: It was discovered that PCL incorrectly handled certain malformed files. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly exploit this to cause a denial of service. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 libpcl-io1.14 1.14.0+dfsg-3ubuntu0.2 libpcl-recognition1.14 1.14.0+dfsg-3ubuntu0.2 libpcl-visualization1.14 1.14.0+dfsg-3ubuntu0.2 pcl-tools 1.14.0+dfsg-3ubuntu0.2 Ubuntu 24.04 LTS libpcl-io1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro libpcl-recognition1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro libpcl-visualization1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro pcl-tools 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro Ubuntu 22.04 LTS libpcl-io1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro libpcl-recognition1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro libpcl-visualization1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro pcl-tools 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro Ubuntu 20.04 LTS libpcl-io1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro libpcl-recognition1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro libpcl-visualization1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro pcl-tools 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro Ubuntu 18.04 LTS libpcl-io1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro libpcl-recognition1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro libpcl-visualization1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro pcl-tools 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro Ubuntu 16.04 LTS libpcl-io1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro libpcl-recognition1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro libpcl-visualization1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro pcl-tools 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7227-1 CVE-2024-53432 Package Information: https://launchpad.net/ubuntu/+source/pcl/1.14.0+dfsg-3ubu...


Attachment: OpenPGP_signature.asc (type=application/pgp-signature)

-----BEGIN PGP SIGNATURE----- wsF5BAABCAAjFiEEKl1CaPno2Qy4/AU8lFzKVeTWQe4FAmeS4CsFAwAAAAAACgkQlFzKVeTWQe6F +hAAyrofGOTOV86WaJrLlAADPlPIUuY0A74qkfiMVOXE4Xt91QJfaVZ/EjV9fQp69uG4SnetuEzf mZ5iibaS9USx9zV8JX5IO1dRqP/t52VWbxQs0CWdVXJpP8xMz4/IMhSYyV4sDoGJydf0qeCCw17N CGybqHkaUXqvjW6Zf+hn0LekU9fdnqmusBJ/67iiWg2hjxNgynNY+CPmLv693vj/XoRjuXaKjVv3 64EqVmF5OFI7rU/U8SiToHQjs9LRxytxI5G4NVk+UyU1N2lxTA5/KsNcEkZxWuPnEikBXZ7l+9Fp dwJznyqVh9SjfPHdbcNjxuniU7SQAwfTJ0dlma4AzjIKdIWPUZB3oR/YGjfWHaCX3po1ZRyglCNv gAuz2mUTCupN/CD45mfPUgThDs+26Hanh2OQZ4LXJYyFfZl9TCfa85VML2bNOKSdcz2iy+uwNyY+ yM3jsyDN9FdWajgJ/mMECjfvpCG7ukfayoDf13eWpQyf+3+dR72wjbwvwInZ5+lFKKvPfo9lGzOo mxhaGbmBhVg1gAvvBKnX/LuMshY48Oi4dojXNYTnE9v+p5K5BST4hPTlTyEpvx9fA5ut65CW4pjZ gRqxVAK/Ojpc8iBOHWGBni1BjdpAwLqSJsC3Uy8VguprlaLbSQm9D7gx67k0Sb9CrakKEb+a3e15 lO4= =+5X+ -----END PGP SIGNATURE-----


Attachment: None (type=text/plain)


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds