Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Ubuntu 21.04 USN-5028-1: Exiv2 Critical Denial Of Service Issue

ubuntu
Calendar Grey August 2, 2021
Dist Ubuntu Esm H88
Ubuntu Security Advisory USN-5029-1 addresses a vulnerability in libjpeg-turbo, which could lead to system crashes when processing specially crafted JPEG files.
Exiv2 could be made to denial of service if received a specially crafted image.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 21.04: libexiv2-27 0.27.3-3ubuntu1.4 Ubuntu 20.04 LTS: libexiv2-27 0.27.2-8ubuntu2.5 Ubuntu 18.04 LTS: libexiv2-14 0.25-3.1ubuntu0.18.04.10 Ubuntu 16.04 ESM: libexiv2-14 0.25-2.1ubuntu16.04.7+esm3 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5028-1

CVE-2021-31291

Severity
critical
Lowest
Low
Medium
High
Critical

August 02, 2021

Package Information

https://launchpad.net/ubuntu/+source/exiv2/0.27.3-3ubuntu1.4 https://launchpad.net/ubuntu/+source/exiv2/0.27.2-8ubuntu2.5 https://launchpad.net/ubuntu/+source/exiv2/0.25-3.1ubuntu0.18.04.10

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here