MGASA-2015-0364

Source
https://advisories.mageia.org/MGASA-2015-0364.html
Import Source
https://advisories.mageia.org/MGASA-2015-0364.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0364
Related
Published
2015-09-13T21:58:30Z
Modified
2015-09-13T21:43:49Z
Summary
Updated libvdpau packages fix security vulnerabilities
Details

Updated libvdpau packages fix security vulnerabilities:

libvdpau versions 1.1 and earlier, when used in setuid or setgid applications, contain vulnerabilities related to environment variable handling that could allow an attacker to execute arbitrary code or overwrite arbitrary files (CVE-2015-5198, CVE-2015-5199, and CVE-2015-5200).

References
Credits

Affected packages

Mageia:5 / libvdpau

Package

Name
libvdpau
Purl
pkg:rpm/mageia/libvdpau?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.1.1-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:4 / libvdpau

Package

Name
libvdpau
Purl
pkg:rpm/mageia/libvdpau?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.1.1-1.mga4

Ecosystem specific

{
    "section": "core"
}