[ELSA-2023-5537] libvpx security update

Severity Important
Affected Packages 2
CVEs 2

[1.7.0-10]
- Heap buffer overflow in vp8 encoding in libvpx (CVE-2023-5217)
Resolves: rhbz#2241191
- crash related to VP9 encoding in libvpx (CVE-2023-44488)
Resolves: rhbz#2241806

ID
ELSA-2023-5537
Severity
important
URL
https://linux.oracle.com/errata/ELSA-2023-5537.html
Published
2023-10-10T00:00:00
(11 months ago)
Modified
2023-10-10T00:00:00
(11 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/libvpx?distro=oraclelinux-8.8 oraclelinux libvpx < 1.7.0-10.el8_8 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/libvpx-devel?distro=oraclelinux-8.8 oraclelinux libvpx-devel < 1.7.0-10.el8_8 oraclelinux-8.8
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...