security advisorydebianDebian
In VIPS, an image processing system, an uninitialized variable which may cause the leakage of remote server path or stack address was fixed. For Debian 9 stretch, this problem has been fixed in version . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2473-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Adrian Bunk November 30, 2020 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : vips Version : 8.4.5-1+deb9u2 CVE ID : CVE-2020-20739 In VIPS, an image processing system, an uninitialized variable which may cause the leakage of remote server path or stack address was fixed. For Debian 9 stretch, this problem has been fixed in version 8.4.5-1+deb9u2. We recommend that you upgrade your vips packages. For the detailed security status of vips please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/vips Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Debian LTS Advisory DLA-2473-2 for vips resolves issues related to unauthorized data exposure stemming from an uninitialized parameter.. Debian LTS,VIPS Security,Remote Leakage,Debian Stretch,Security Updates. . LinuxSecurity.com Team
Nov 30, 2020
Debian LTS