Bug 33737 - htmldoc new security issues CVE-2024-45508 and CVE-2024-46478
Summary: htmldoc new security issues CVE-2024-45508 and CVE-2024-46478
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 9
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL:
Whiteboard: MGA9-64-OK
Keywords: advisory, validated_update
Depends on:
Blocks:
 
Reported: 2024-11-08 08:52 CET by Nicolas Salguero
Modified: 2024-11-09 06:18 CET (History)
2 users (show)

See Also:
Source RPM: htmldoc-1.9.15-3.mga9.src.rpm
CVE: CVE-2024-45508, CVE-2024-46478
Status comment:


Attachments

Nicolas Salguero 2024-11-08 08:53:06 CET

CVE: (none) => CVE-2024-46478
Source RPM: (none) => htmldoc-1.9.15-3.mga9.src.rpm
Status comment: (none) => Patch available from upstream
Whiteboard: (none) => MGA9TOO

Comment 1 Nicolas Salguero 2024-11-08 09:41:04 CET
Debian also lists CVE-2024-45508. Fix: https://github.com/michaelrsweet/htmldoc/commit/2d5b2ab9ddbf2aee2209010cebc11efdd1cab6e2

Status comment: Patch available from upstream => Patches available from upstream
CVE: CVE-2024-46478 => CVE-2024-45508, CVE-2024-46478
Summary: htmldoc new security issue CVE-2024-46478 => htmldoc new security issues CVE-2024-45508 and CVE-2024-46478

Comment 2 Nicolas Salguero 2024-11-08 09:54:07 CET
Suggested advisory:
========================

The updated packages fix security vulnerabilities:

HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading whitespace from a whitespace-only node.. (CVE-2024-45508)

HTMLDOC v1.9.18 contains a buffer overflow in parse_pre function,ps-pdf.cxx:5681. (CVE-2024-46478)

References:
https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/RNU4P4P7ZCF5TYOAPMGGBX2KSE6IHZFT/
========================

Updated packages in core/updates_testing:
========================
htmldoc-1.9.15-3.1.mga9
htmldoc-nogui-1.9.15-3.1.mga9

from SRPM:
htmldoc-1.9.15-3.1.mga9.src.rpm

Status comment: Patches available from upstream => (none)
Status: NEW => ASSIGNED
Assignee: bugsquad => qa-bugs
Version: Cauldron => 9
Whiteboard: MGA9TOO => (none)

katnatek 2024-11-08 18:07:15 CET

Keywords: (none) => advisory

Comment 3 katnatek 2024-11-08 23:03:17 CET
RH x86_64

LC_ALL=C urpmi --auto --auto-update
medium "QA Testing (64-bit)" is up-to-date
medium "Core Release (distrib1)" is up-to-date
medium "Core Updates (distrib3)" is up-to-date
medium "Nonfree Release (distrib11)" is up-to-date
medium "Nonfree Updates (distrib13)" is up-to-date
medium "Tainted Release (distrib21)" is up-to-date
medium "Tainted Updates (distrib23)" is up-to-date
medium "Core 32bit Release (distrib31)" is up-to-date
medium "Core 32bit Updates (distrib32)" is up-to-date
medium "Nonfree 32bit Release (distrib36)" is up-to-date
medium "Nonfree 32bit Updates (distrib37)" is up-to-date
medium "Tainted 32bit Release (distrib41)" is up-to-date
medium "Tainted 32bit Updates (distrib42)" is up-to-date

installing htmldoc-1.9.15-3.1.mga9.x86_64.rpm htmldoc-nogui-1.9.15-3.1.mga9.x86_64.rpm from //home/katnatek/qa-testing/x86_64
Preparing...                     ##################################################################################################
      1/2: htmldoc-nogui         ##################################################################################################  
      2/2: htmldoc               ##################################################################################################  
      1/2: removing htmldoc-nogui-1.9.15-3.mga9.x86_64
                                 ##################################################################################################
      2/2: removing htmldoc-1.9.15-3.mga9.x86_64
                                 ##################################################################################################

Use gui to convert pidgin html log of i18n meeting to pdf, not good translation of some characters, but works

Use cli to convert pidgin html log of i18n meeting to pdf, not good translation of some characters, but works

POC requires to rebuild with asan so skip

CC: (none) => andrewsfarm
Whiteboard: (none) => MGA9-64-OK

Comment 4 Thomas Andrews 2024-11-09 02:14:36 CET
Validating.

Keywords: (none) => validated_update
CC: (none) => sysadmin-bugs

Comment 5 Mageia Robot 2024-11-09 06:18:54 CET
An update for this issue has been pushed to the Mageia Updates repository.

https://advisories.mageia.org/MGASA-2024-0353.html

Status: ASSIGNED => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.