exiv2 0.27.3-3ubuntu1.3 source package in Ubuntu

Changelog

exiv2 (0.27.3-3ubuntu1.3) hirsute-security; urgency=medium

  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-29463.patch: Improve bound checking in
      WebPImage::doWriteMetadata() in src/webpimage.cpp.
    - CVE-2021-29463
  * SECURITY UPDATE: Heap buffer overflow
    - debian/patches/CVE-2021-29464.patch: better bounds checking in
      Jp2Image::encodeJp2Header() in src/jp2image.cpp.
    - CVE-2021-29464
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-29473.patch: Add bounds check in
      Jp2Image::doWriteMetadata() in src/jp2image.cpp.
    - CVE-2021-29473
  * SECURITY UPDATE: Leak bytes of stack memory
    - debian/patches/CVE-2021-29623.patch: Use readOrThrow to check error
      conditions of iIo.read() src/webpimage.cpp.
    - CVE-2021-29623
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-32617.patch: Fix quadratic complexity performance bug
      in xmpsdk/src/XMPMeta-Parse.cpp.
    - CVE-2021-32617

 -- Leonidas Da Silva Barbosa <email address hidden>  Mon, 24 May 2021 09:59:46 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa
Uploaded to:
Hirsute
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
graphics
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
exiv2_0.27.3.orig.tar.gz 25.0 MiB 6398bc743c32b85b2cb2a604273b8c90aa4eb0fd7c1700bf66cbb2712b4f00c1
exiv2_0.27.3-3ubuntu1.3.debian.tar.xz 66.0 KiB 42182514a7ac6fa0bded0ae8d91221fae48baa36d8ced6ba53ee11a3b927bf44
exiv2_0.27.3-3ubuntu1.3.dsc 2.3 KiB da2be84d3d346f179afdca0bcfc8219c9c2254e70c6b26e85c4b09243a72a8d3

View changes file

Binary packages built by this source

exiv2: No summary available for exiv2 in ubuntu hirsute.

No description available for exiv2 in ubuntu hirsute.

exiv2-dbgsym: No summary available for exiv2-dbgsym in ubuntu hirsute.

No description available for exiv2-dbgsym in ubuntu hirsute.

libexiv2-27: No summary available for libexiv2-27 in ubuntu hirsute.

No description available for libexiv2-27 in ubuntu hirsute.

libexiv2-27-dbgsym: No summary available for libexiv2-27-dbgsym in ubuntu hirsute.

No description available for libexiv2-27-dbgsym in ubuntu hirsute.

libexiv2-dev: No summary available for libexiv2-dev in ubuntu hirsute.

No description available for libexiv2-dev in ubuntu hirsute.

libexiv2-doc: No summary available for libexiv2-doc in ubuntu hirsute.

No description available for libexiv2-doc in ubuntu hirsute.