Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Fedora 37: FEDORA-2023-88c87f6191 Critical Heap Buffer Overflow

fedora
Calendar Grey May 19, 2023
Dist Fedora Esm H88
Fedora 37 introduces the latest mingw-LibRaw version, fixing the CVE-2023-1729 heap buffer overflow vulnerability for improved security and stability. Users must update to mitigate risks
Backport fix for CVE-2023-1729.

Summary

MinGW Windows LibRaw library.

Backport fix for CVE-2023-1729.

* Wed May 10 2023 Sandro Mani - 0.20.2-9

- Backport patch for CVE-2023-1729

[ 1 ] Bug #2188277 - CVE-2023-1729 mingw-LibRaw: LibRaw: a heap-buffer-overflow in raw2image_ex() [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2188277

su -c 'dnf upgrade --advisory FEDORA-2023-88c87f6191' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 37
Version: 0.20.2
Release: 9.fc37
Summary: Library for reading RAW files obtained from digital photo cameras

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here