Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Debian 10 DLA-3169-1 High: Batik Arbitrary Code Execution Advisory

debian lts
Calendar Grey October 29, 2022
Dist Debian Esm H88
Debian LTS Advisory DLA-3170-1 highlights the recent security update for GNU Wget, focusing on vulnerabilities that could lead to denial-of-service attacks.
It was discovered that Apache Batik, a SVG library for Java, allowed attackers to run arbitrary Java code by processing a malicious SVG file

Summary

For Debian 10 buster, these problems have been fixed in version

1.10-2+deb10u2.

We recommend that you upgrade your batik packages.

For the detailed security status of batik please refer to

its security tracker page at: security-tracker.debian.org/tracker/batik

Further information about Debian LTS security advisories, how to apply

these updates to your system and frequently asked questions can be found at: wiki.debian.org/LTS/


Package: batik
Version: 1.10-2+deb10u2
CVE ID: CVE-2022-41704 CVE-2022-42890

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here