Category Archives: Advisories

ecdsautils-0.4.1-1.el8

Read Time:17 Second

FEDORA-EPEL-2022-dd1b016ba4

Packages in this update:

ecdsautils-0.4.1-1.el8

Update description:

Fixes CVE-2022-24884 (Improper Verification of ECDSA Signatures). In previous versions ecdsautils would erroneously accept all-zero signatures as valid.

More information can be found here: https://github.com/freifunk-gluon/ecdsautils/security/advisories/GHSA-qhcg-9ffp-78pw

Read More

USN-5405-1: jbig2dec vulnerabilities

Read Time:19 Second

It was discovered that jbig2dec incorrectly handled memory when parsing
invalid files. An attacker could use this issue to cause jbig2dec to crash,
leading to a denial of service. (CVE-2017-9216)

It was discovered that jbig2dec incorrectly handled memory when processing
untrusted input. An attacker could use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2020-12268)

Read More