[FEDORA-2023-f696934fbf] Fedora 37: libvpx

Severity High
Affected Packages 1
CVEs 2

Security fixes for CVE-2023-5217 and CVE-2023-44488

Package Affected Version
pkg:rpm/fedora/libvpx?distro=fedora-37 < 1.12.0.4.fc37
ID
FEDORA-2023-f696934fbf
Severity
high
Severity from
CVE-2023-5217
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2023-f696934fbf
Published
2023-10-23T01:25:02
(11 months ago)
Modified
2023-10-23T01:25:02
(11 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 2241812 Bug #2241812 - CVE-2023-44488 libvpx: TRIAGE-CVE-2023-44488 libvpx: crash related to VP9 encoding [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241812
Bugzilla 2241260 Bug #2241260 - CVE-2023-5217 libvpx: Heap buffer overflow in vp8 encoding in libvpx [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241260
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/libvpx?distro=fedora-37 fedora libvpx < 1.12.0.4.fc37 fedora-37
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...