2023-10-18 16:21:58 |
Remi Meier |
description |
There are two CVEs with a score of 9.8 CRITICAL published on 29-08-2023:
* https://nvd.nist.gov/vuln/detail/CVE-2023-40889
* https://nvd.nist.gov/vuln/detail/CVE-2023-40890
Now new release seems to be available that fixes these vulnerabilities. The latest package version seems to be zbar-tools (0.23-1.3).
Additional information:
~ $ lsb_release -rd
No LSB modules are available.
Description: Ubuntu 23.04
Release: 23.04
~ $ apt-cache policy zbar-tools
zbar-tools:
Installed: 0.23.92-7
Candidate: 0.23.92-7
Version table:
*** 0.23.92-7 500
500 http://ch.archive.ubuntu.com/ubuntu lunar/universe amd64 Packages
100 /var/lib/dpkg/status
# Expected
No CVE
# Actual
There are two known CVEs |
There are two CVEs with a score of 9.8 CRITICAL published on 29-08-2023:
* https://nvd.nist.gov/vuln/detail/CVE-2023-40889
* https://nvd.nist.gov/vuln/detail/CVE-2023-40890
No new release seems to be available that fixes these vulnerabilities. The latest package version seems to be zbar-tools (0.23.92-7).
Additional information:
~ $ lsb_release -rd
No LSB modules are available.
Description: Ubuntu 23.04
Release: 23.04
~ $ apt-cache policy zbar-tools
zbar-tools:
Installed: 0.23.92-7
Candidate: 0.23.92-7
Version table:
*** 0.23.92-7 500
500 http://ch.archive.ubuntu.com/ubuntu lunar/universe amd64 Packages
100 /var/lib/dpkg/status
# Expected
No CVE
# Actual
There are two known CVEs |
|