Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

Ubuntu 20.04: USN-4949-1 High: Libpodofo Memory Corruption Vulnerability

debian lts
Calendar Grey April 29, 2017
Dist Debian Esm H88
Cyber intruders might take advantage of vulnerabilities in libpodofo, potentially leading to service interruptions; users of Debian 7 should consider upgrading.
Several heap-based buffer overflows, integer overflows and NULL pointer dereferences have been discovered in libpodofo, a library for manipulating PDF files, that allow remote atta...

Summary

For Debian 7 "Wheezy", these problems have been fixed in version
0.9.0-1.1+deb7u1.

We recommend that you upgrade your libpodofo packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Package: libpodofo
Version: 0.9.0-1.1+deb7u1
CVE ID: CVE-2015-8981 CVE-2017-5852 CVE-2017-5853
Debian Bug: 854599 854600 854601 854602 854604 859331

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here