LibreOffice slideshow aborts with stack smashing in cairo’s composite_boxes (CVE-2020-35492). References: - https://bugs.mageia.org/show_bug.cgi?id=28084 . MGASA-2021-0028 - Updated cairo packages fix a security vulnerability Publication date: 14 Jan 2021 URL: https://advisories.mageia.org/MGASA-2021-0028.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-35492 LibreOffice slideshow aborts with stack smashing in cairo’s composite_boxes (CVE-2020-35492). References: - https://bugs.mageia.org/show_bug.cgi?id=28084 - https://lists.debian.org/debian-lts-announce/2021/01/msg00006.html - https://www.cve.org/CVERecord?id=CVE-2020-35492 SRPMS: - 7/core/cairo-1.16.0-2.2.mga7 . Recent cairo updates in Mageia 7 address a significant security flaw that was leading to abrupt terminations of LibreOffice presentations. Discover more!. Cairo Security, Mageia Advisory, LibreOffice Issue, Cairo Update, Stack Smashing. . Severity: Critical. LinuxSecurity.com Team
LibreOffice slideshow aborts with stack smashing in cairo’s composite_boxes. For Debian 9 stretch, this problem has been fixed in version . - -----------------------------------------------------------------------Debian LTS Advisory DLA-2518-1
gcab: Extracting malformed .cab files causes stack smashing potentially leading to arbitrary code execution (CVE-2018-5345) SL7 x86_64 gcab-debuginfo-0.7-4.el7_4.i686.rpm gcab-debuginfo-0.7-4.el7_4.x86_64.rpm libgcab1-0.7-4.el7_4.i686.rpm libgcab1-0.7-4.el7_4.x86_64.rpm gcab-0.7-4.el7_4.x86_64.rpm libgcab1-devel-0.7-4.el7_4.i686.rpm libgcab1-devel-0.7-4.el7_4.x86 [More...]. Synopsis: Important: gcab security update Advisory ID: SLSA-2018:0350-1 Issue Date: 2018-02-26 CVE Numbers: CVE-2018-5345 -- Security Fix(es): * gcab: Extracting malformed .cab files causes stack smashing potentially leading to arbitrary code execution (CVE-2018-5345) -- SL7 x86_64 gcab-debuginfo-0.7-4.el7_4.i686.rpm gcab-debuginfo-0.7-4.el7_4.x86_64.rpm libgcab1-0.7-4.el7_4.i686.rpm libgcab1-0.7-4.el7_4.x86_64.rpm gcab-0.7-4.el7_4.x86_64.rpm libgcab1-devel-0.7-4.el7_4.i686.rpm libgcab1-devel-0.7-4.el7_4.x86_64.rpm - Scientific Linux Development Team . Urgent security patch for gcab addressing potential arbitrary code execution stemming from stack overflow issues in Scientific Linux 7.x.. gcab security, stack smashing, arbitrary code execution, Scientific Linux, security update. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.