Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 8: 2023-0082 High Severity LibRaw Buffer Overflow Vulnerability

mageia
Calendar Grey March 1, 2023
Dist Mageia Esm H88
Newly released libraw updates rectify vulnerability related to buffer overflow, preventing potential privilege escalation in the Mageia operating system.
Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_datastream::gets(char*, int) in /src/libraw/src/libraw_datas...

Summary

Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_datastream::gets(char*, int) in /src/libraw/src/libraw_datastream.cpp. (CVE-2021-32142)

References

- https://bugs.mageia.org/show_bug.cgi?id=31594

- https://lists.suse.com/pipermail/sle-security-updates/2023-February/013886.html

- https://www.cve.org/CVERecord?id=CVE-2021-32142

Resolution

SRPMS

- 8/core/libraw-0.20.2-1.1.mga8

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 01 Mar 2023
URL: https://advisories.mageia.org/MGASA-2023-0082.html
Type: security
CVE: CVE-2021-32142

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here