| Summary: | cairo new security issue CVE-2017-7475 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | major | ||
| Priority: | Normal | CC: | jani.valimaa, nicolas.salguero, shlomif, sysadmin-bugs |
| Version: | 7 | Keywords: | advisory, validated_update |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA7-64-OK | ||
| Source RPM: | cairo-1.16.0-2.mga7.src.rpm | CVE: | CVE-2017-7475 |
| Status comment: | |||
|
Description
David Walser
2020-07-21 18:23:55 CEST
David Walser
2020-07-21 18:24:04 CEST
Whiteboard:
(none) =>
MGA7TOO Different maintainers, assigning globally, CC'ing Shlomi & wally. CC:
(none) =>
jani.valimaa, shlomif According to Gentoo, CVE-2017-9814 does not affect 1.16.0 and above. OpenSuse seems to confirm because they remove the patch when updating their package to version 1.16.0. Suggested advisory: ======================== The updated packages fix a security vulnerability: Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash. (CVE-2017-7475) References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7475 https://lists.opensuse.org/opensuse-updates/2018-05/msg00036.html http://lists.suse.com/pipermail/sle-security-updates/2018-May/004095.html https://lists.opensuse.org/opensuse-updates/2018-07/msg00002.html https://lists.opensuse.org/opensuse-security-announce/2020-07/msg00042.html ======================== Updated packages in core/updates_testing: ======================== lib64cairo2-1.16.0-2.1.mga7 lib(64)cairo-devel-1.16.0-2.1.mga7 lib(64)cairo-static-devel-1.16.0-2.1.mga7 from SRPM: cairo-1.16.0-2.1.mga7.src.rpm Summary:
cairo new security issue CVE-2017-9814 =>
cairo new security issue CVE-2017-7475 PoC: https://bugzilla.suse.com/show_bug.cgi?id=1036789#c7 Before update: $ hb-view 1.ttf hello Segmentation fault (core dumped) After update: $ hb-view 1.ttf hello $ Very good. Keywords:
(none) =>
validated_update
Aurelien Oudelet
2020-09-02 22:30:10 CEST
Keywords:
(none) =>
advisory An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2020-0359.html Resolution:
(none) =>
FIXED |