[ALSA-2023:5214] libwebp security update

Severity Important
Affected Packages 6
CVEs 1

libwebp security update

The libwebp packages provide a library and tools for the WebP graphics format. WebP is an image format with a lossy compression of digital photographic images. WebP consists of a codec based on the VP8 format, and a container based on the Resource Interchange File Format (RIFF). Webmasters, web developers and browser developers can use WebP to compress, archive, and distribute digital images more efficiently.

Security Fix(es):

  • libwebp: Heap buffer overflow in WebP Codec (CVE-2023-4863)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

ID
ALSA-2023:5214
Severity
important
URL
https://errata.almalinux.org/ALSA-2023:5214.html
Published
2023-09-19T00:00:00
(12 months ago)
Modified
2023-09-20T11:58:22
(12 months ago)
Rights
Copyright 2023 AlmaLinux OS
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/almalinux/libwebp?arch=x86_64&distro=almalinux-9.2 almalinux libwebp < 1.2.0-7.el9_2 almalinux-9.2 x86_64
Affected pkg:rpm/almalinux/libwebp?arch=i686&distro=almalinux-9.2 almalinux libwebp < 1.2.0-7.el9_2 almalinux-9.2 i686
Affected pkg:rpm/almalinux/libwebp?arch=aarch64&distro=almalinux-9.2 almalinux libwebp < 1.2.0-7.el9_2 almalinux-9.2 aarch64
Affected pkg:rpm/almalinux/libwebp-devel?arch=x86_64&distro=almalinux-9.2 almalinux libwebp-devel < 1.2.0-7.el9_2 almalinux-9.2 x86_64
Affected pkg:rpm/almalinux/libwebp-devel?arch=i686&distro=almalinux-9.2 almalinux libwebp-devel < 1.2.0-7.el9_2 almalinux-9.2 i686
Affected pkg:rpm/almalinux/libwebp-devel?arch=aarch64&distro=almalinux-9.2 almalinux libwebp-devel < 1.2.0-7.el9_2 almalinux-9.2 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...