Rebuilt with latest patched stb_image: memory-safety fixes. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-fc872e9426 2025-12-05 02:40:12.305988+00:00 -------------------------------------------------------------------------------- Name : CuraEngine Product : Fedora 42 Version : 5.4.0 Release : 10.fc42 URL : https://github.com/Ultimaker/CuraEngine Summary : Engine for processing 3D models into G-code instructions for 3D printers Description : CuraEngine is a C++ console application for 3D printing G-code generation. It has been made as a better and faster alternative to the old Skeinforge engine. This is just a console application for G-code generation. For a full graphical application look at cura with is the graphical frontend for CuraEngine. -------------------------------------------------------------------------------- Update Information: Rebuilt with latest patched stb_image: memory-safety fixes -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 26 2025 Benjamin A. Beasley - 1:5.4.0-10 - Rebuilt with latest patched stb_image: memory-safety fixes * Wed Jul 23 2025 Fedora Release Engineering - 1:5.4.0-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-fc872e9426' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Rebuilt with latest patched stb_image: memory-safety fixes. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-19c65f1d15 2025-12-05 02:08:09.994316+00:00 -------------------------------------------------------------------------------- Name : CuraEngine Product : Fedora 43 Version : 5.4.0 Release : 10.fc43 URL : https://github.com/Ultimaker/CuraEngine Summary : Engine for processing 3D models into G-code instructions for 3D printers Description : CuraEngine is a C++ console application for 3D printing G-code generation. It has been made as a better and faster alternative to the old Skeinforge engine. This is just a console application for G-code generation. For a full graphical application look at cura with is the graphical frontend for CuraEngine. -------------------------------------------------------------------------------- Update Information: Rebuilt with latest patched stb_image: memory-safety fixes -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 26 2025 Benjamin A. Beasley - 1:5.4.0-10 - Rebuilt with latest patched stb_image: memory-safety fixes -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-19c65f1d15' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Denial of service due to integer overflow (CVE-2022-28041) References: - https://bugs.mageia.org/show_bug.cgi?id=32055 - https://lists.fedoraproject.org/archives/list/
Buffer overflow vulnerability in function stbi__extend_receive in stb_image.h in stb 2.26 via a crafted JPEG file. (CVE-2021-28021) An issue was discovered in stb stb_image.h 1.33 through 2.27. The HDR loader parsed truncated end-of-file RLE scanlines as an infinite sequence . MGASA-2021-0549 - Updated curaengine packages fix security vulnerability Publication date: 10 Dec 2021 URL: https://advisories.mageia.org/MGASA-2021-0549.html Type: security Affected Mageia releases: 8 CVE: CVE-2021-28021, CVE-2021-42715, CVE-2021-42716 Buffer overflow vulnerability in function stbi__extend_receive in stb_image.h in stb 2.26 via a crafted JPEG file. (CVE-2021-28021) An issue was discovered in stb stb_image.h 1.33 through 2.27. The HDR loader parsed truncated end-of-file RLE scanlines as an infinite sequence of zero-length runs. An attacker could potentially have caused denial of service in applications using stb_image by submitting crafted HDR files. (CVE-2021-42715) An issue was discovered in stb stb_image.h 2.27. The PNM loader incorrectly interpreted 16-bit PGM files as 8-bit when converting to RGBA, leading to a buffer overflow when later reinterpreting the result as a 16-bit buffer. An attacker could potentially have crashed a service using stb_image, or read up to 1024 bytes of non-consecutive heap data without control over the read location. (CVE-2021-42716) References: - https://bugs.mageia.org/show_bug.cgi?id=29622 - https://lists.fedoraproject.org/archives/list/
Get the latest Linux and open source security news straight to your inbox.