\{'type': 'Security', 'shortCode': 'RL', 'name': 'RLSA-2021:2354', 'synopsis': 'Important: libwebp security update', 'severity': 'Important', 'topic': 'An update for libwebp is now available for Rocky Linux 8.\nRocky Linux Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.', 'description': 'The libwebp packages provide a library and tools for the WebP graphics format. WebP is an image format with a lossy compression of digital photographic images. WebP consists of a codec based on the VP8 format, and a container based on the Resource Interchange File Format (RIFF). Webmasters, web developers and browser developers can use WebP to compress, archive, and distribute digital images more efficiently.\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.', 'solution': None, 'affectedProducts': ['Rocky Linux 8'], 'fixes': ['1956829', '1956843', '1956919'], 'cves': ['Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2018-25011.json:::CVE-2018-25011', 'Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2020-36328.json:::CVE-2020-36328', 'Red Hat:::https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2020-36329.json:::CVE-2020-36329'], 'references': [], 'publishedAt': '2021-07-22T03:13:32.262587Z', 'rpms': ['libwebp-1.0.0-3.el8_4.aarch64.rpm', 'libwebp-1.0.0-3.el8_4.i686.rpm', 'libwebp-1.0.0-3.el8_4.src.rpm', 'libwebp-1.0.0-3.el8_4.x86_64.rpm', 'libwebp-debuginfo-1.0.0-3.el8_4.aarch64.rpm', 'libwebp-debuginfo-1.0.0-3.el8_4.i686.rpm', 'libwebp-debuginfo-1.0.0-3.el8_4.x86_64.rpm', 'libwebp-debugsource-1.0.0-3.el8_4.aarch64.rpm', 'libwebp-debugsource-1.0.0-3.el8_4.i686.rpm', 'libwebp-debugsource-1.0.0-3.el8_4.x86_64.rpm', 'libwebp-devel-1.0.0-3.el8_4.aarch64.rpm', 'libwebp-devel-1.0.0-3.el8_4.i686.rpm', 'libwebp-devel-1.0.0-3.el8_4.x86_64.rpm']}\

Rocky Linux: RLSA-2021:2354 libwebp security update

September 2, 2022
An update for libwebp is now available for Rocky Linux 8. Rocky Linux Product Security has rated this update as having a security impact of Important

Summary

An update for libwebp is now available for Rocky Linux 8. Rocky Linux Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.


The libwebp packages provide a library and tools for the WebP graphics format. WebP is an image format with a lossy compression of digital photographic images. WebP consists of a codec based on the VP8 format, and a container based on the Resource Interchange File Format (RIFF). Webmasters, web developers and browser developers can use WebP to compress, archive, and distribute digital images more efficiently. For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

RPMs

libwebp-1.0.0-3.el8_4.aarch64.rpm

libwebp-1.0.0-3.el8_4.i686.rpm

libwebp-1.0.0-3.el8_4.src.rpm

libwebp-1.0.0-3.el8_4.x86_64.rpm

libwebp-debuginfo-1.0.0-3.el8_4.aarch64.rpm

libwebp-debuginfo-1.0.0-3.el8_4.i686.rpm

libwebp-debuginfo-1.0.0-3.el8_4.x86_64.rpm

libwebp-debugsource-1.0.0-3.el8_4.aarch64.rpm

libwebp-debugsource-1.0.0-3.el8_4.i686.rpm

libwebp-debugsource-1.0.0-3.el8_4.x86_64.rpm

libwebp-devel-1.0.0-3.el8_4.aarch64.rpm

libwebp-devel-1.0.0-3.el8_4.i686.rpm

libwebp-devel-1.0.0-3.el8_4.x86_64.rpm

References

No References

CVEs

https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2018-25011.json

https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2020-36328.json

https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2020-36329.json

Severity
Name: RLSA-2021:2354
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=

https://bugzilla.redhat.com/show_bug.cgi?id=

https://bugzilla.redhat.com/show_bug.cgi?id=


Related News