Alerts This Week
Warning Icon 1 687
Alerts This Week
Warning Icon 1 687

openSUSE Leap 15.2: 2021:1645-1 Moderate: Getdata Use After Free

opensuse
Calendar Grey December 30, 2021
Dist Opensuse Esm H88
The Debian team has issued a critical update for fetchdata to patch the serious vulnerability identified as CVE-2023-42501.
An update that fixes one vulnerability is now available

Description

getdata was updated to 0.11.0, fixing bugs and a security issue:

- CVE-2021-20204: Fixed a use after free in _GD_Supports() in encoding.c

(boo#1186251)

for all relevant changes see:

https://github.com/ketiltrout/getdata/releases/tag/v0.11.0

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2021-1645=1

Package List

- openSUSE Leap 15.2 (x86_64):

getdata-0.11.0-lp152.4.3.1

getdata-debuginfo-0.11.0-lp152.4.3.1

getdata-debugsource-0.11.0-lp152.4.3.1

getdata-devel-0.11.0-lp152.4.3.1

getdata-doc-0.11.0-lp152.4.3.1

libf95getdata7-0.11.0-lp152.4.3.1

libf95getdata7-debuginfo-0.11.0-lp152.4.3.1

libfgetdata6-0.11.0-lp152.4.3.1

libfgetdata6-debuginfo-0.11.0-lp152.4.3.1

libgetdata++7-0.11.0-lp152.4.3.1

libgetdata++7-debuginfo-0.11.0-lp152.4.3.1

libgetdata8-0.11.0-lp152.4.3.1

libgetdata8-debuginfo-0.11.0-lp152.4.3.1

perl-getdata-0.11.0-lp152.4.3.1

perl-getdata-debuginfo-0.11.0-lp152.4.3.1

python-getdata-0.11.0-lp152.4.3.1

python-getdata-debuginfo-0.11.0-lp152.4.3.1

References

https://www.suse.com/security/cve/CVE-2021-20204.html

https://bugzilla.suse.com/1186251

Announcement ID: openSUSE-SU-2021:1645-1
Rating: moderate
Affected Products: openSUSE Leap 15.2 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here