MGASA-2022-0402

Source
https://advisories.mageia.org/MGASA-2022-0402.html
Import Source
https://advisories.mageia.org/MGASA-2022-0402.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2022-0402
Related
Published
2022-11-01T22:58:59Z
Modified
2022-11-01T22:02:06Z
Summary
Updated gdk-pixbuf2.0 packages fix security vulnerability
Details

GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of image data in GIF files with lzw minimum code size equals to 12. (CVE-2021-44648)

References
Credits

Affected packages

Mageia:8 / gdk-pixbuf2.0

Package

Name
gdk-pixbuf2.0
Purl
pkg:rpm/mageia/gdk-pixbuf2.0?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.42.2-1.2.mga8

Ecosystem specific

{
    "section": "core"
}