MGASA-2021-0017

Source
https://advisories.mageia.org/MGASA-2021-0017.html
Import Source
https://advisories.mageia.org/MGASA-2021-0017.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2021-0017
Related
Published
2021-01-10T19:46:12Z
Modified
2021-01-10T18:57:32Z
Summary
Updated libass packages fix security vulnerability
Details

In libass 0.14.0, the ass_outline_construct's call to outline_stroke causes a signed integer overflow. (CVE-2020-26682)

References
Credits

Affected packages

Mageia:7 / libass

Package

Name
libass
Purl
pkg:rpm/mageia/libass?arch=source&distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.15.0-1.mga7

Ecosystem specific

{
    "section": "core"
}