MGASA-2022-0148 - Updated openscad packages fix security vulnerability Publication date: 22 Apr 2022 URL: https://advisories.mageia.org/MGASA-2022-0148.html Type: security Affected Mageia releases: 8 CVE: CVE-2022-0496, CVE-2022-0497 Out-of-bounds memory access in DXF loader. (CVE-2022-0496) Out-of-bounds memory access in comment parser. (CVE-2022-0497) References: - https://bugs.mageia.org/show_bug.cgi?id=30294 - https://lists.fedoraproject.org/archives/list/[email protected]/thread/BQEY4FM5EEVUSDD4ZW7732TQHEELJJMM/ - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0496 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0497 SRPMS: - 8/core/openscad-2021.01-1.3.mga8