Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Debian: DSA-4931-1 Moderate: libwebp Denial Of Service Issues

debian
Calendar Grey June 10, 2021
Debian Logo
Several vulnerabilities in libwebp might result in service disruption or arbitrary code execution due to improperly formatted images. An upgrade is advised.
Multiple vulnerabilities were discovered in libwebp, the implementation of the WebP image format, which could result in denial of service, memory disclosure or potentially the exec...

Summary

Multiple vulnerabilities were discovered in libwebp, the implementation
of the WebP image format, which could result in denial of service, memory
disclosure or potentially the execution of arbitrary code if malformed
images are processed.

For the stable distribution (buster), these problems have been fixed in
version 0.6.1-2+deb10u1.

We recommend that you upgrade your libwebp packages.

For the detailed security status of libwebp please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/libwebp

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: libwebp
CVE ID: CVE-2018-25009 CVE-2018-25010 CVE-2018-25011 CVE-2018-25013

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here