Scientific Linux alert SLSA-2021:3233-1 (compat-exiv2-026)
From: | Farhan Ahmed <fahmed@fnal.gov> | |
To: | scientific-linux-errata@listserv.fnal.gov | |
Subject: | Security ERRATA Important: compat-exiv2-026 on SL7.x x86_64 | |
Date: | Thu, 26 Aug 2021 16:56:50 -0000 | |
Message-ID: | <20210826165650.5835.43159@4d14c5bc2382> |
Synopsis: Important: compat-exiv2-026 security update Advisory ID: SLSA-2021:3233-1 Issue Date: 2021-08-26 CVE Numbers: CVE-2021-31291 -- Security Fix(es): * exiv2: Heap-based buffer overflow vulnerability in jp2image.cpp (CVE-2021-31291) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE7 --- SL7 x86_64 - compat-exiv2-026-0.26-3.el7_9.i686.rpm - compat-exiv2-026-0.26-3.el7_9.x86_64.rpm - compat-exiv2-026-debuginfo-0.26-3.el7_9.i686.rpm - compat-exiv2-026-debuginfo-0.26-3.el7_9.x86_64.rpm -- - Scientific Linux Development Team