exiv2 0.27.3-3ubuntu0.4 source package in Ubuntu

Changelog

exiv2 (0.27.3-3ubuntu0.4) groovy-security; urgency=medium

  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-29463.patch: Improve bound checking in
      WebPImage::doWriteMetadata() in src/webpimage.cpp.
    - CVE-2021-29463
  * SECURITY UPDATE: Heap buffer overflow
    - debian/patches/CVE-2021-29464.patch: better bounds checking in
      Jp2Image::encodeJp2Header() in src/jp2image.cpp.
    - CVE-2021-29464
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-29473.patch: Add bounds check in
      Jp2Image::doWriteMetadata() in src/jp2image.cpp.
    - CVE-2021-29473
  * SECURITY UPDATE: Leak bytes of stack memory
    - debian/patches/CVE-2021-29623.patch: Use readOrThrow to check error
      conditions of iIo.read() src/webpimage.cpp.
    - CVE-2021-29623
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-32617.patch: Fix quadratic complexity performance bug
      in xmpsdk/src/XMPMeta-Parse.cpp.
    - CVE-2021-32617

 -- Leonidas Da Silva Barbosa <email address hidden>  Mon, 24 May 2021 10:29:52 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa
Uploaded to:
Groovy
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
graphics
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
exiv2_0.27.3.orig.tar.gz 25.0 MiB 6398bc743c32b85b2cb2a604273b8c90aa4eb0fd7c1700bf66cbb2712b4f00c1
exiv2_0.27.3-3ubuntu0.4.debian.tar.xz 65.9 KiB c5476f4d2ba1b5367f0dd16c35db4643a849d242522ca929b65a18f21c42f2d8
exiv2_0.27.3-3ubuntu0.4.dsc 2.3 KiB 961ed0dcfc7cbfd813bad57e6c17c0fdeb0486a25d5a523428e9cef0de214104

View changes file

Binary packages built by this source

exiv2: No summary available for exiv2 in ubuntu groovy.

No description available for exiv2 in ubuntu groovy.

exiv2-dbgsym: No summary available for exiv2-dbgsym in ubuntu groovy.

No description available for exiv2-dbgsym in ubuntu groovy.

libexiv2-27: No summary available for libexiv2-27 in ubuntu groovy.

No description available for libexiv2-27 in ubuntu groovy.

libexiv2-27-dbgsym: No summary available for libexiv2-27-dbgsym in ubuntu groovy.

No description available for libexiv2-27-dbgsym in ubuntu groovy.

libexiv2-dev: No summary available for libexiv2-dev in ubuntu groovy.

No description available for libexiv2-dev in ubuntu groovy.

libexiv2-doc: No summary available for libexiv2-doc in ubuntu groovy.

No description available for libexiv2-doc in ubuntu groovy.