ELSA-2023-0383

ELSA-2023-0383 - libXpm security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-01-24

Description


[3.5.13-8]
- Fix CVE-2022-46285: infinite loop on unclosed comments (#2160230)
- Fix CVE-2022-44617: runaway loop with width of 0 (#2160232)
- Fix CVE-2022-4883: compression depends on /usr/local/bin:/usr/bin (#2160242)


Related CVEs


CVE-2022-4883
CVE-2022-44617
CVE-2022-46285

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) libXpm-3.5.13-8.el9_1.src.rpma8ee7c28cab43a91a465a718413d26b5-
libXpm-3.5.13-8.el9_1.aarch64.rpm0d1ab2036dfd40d689236e4d03fe5358-
libXpm-devel-3.5.13-8.el9_1.aarch64.rpmcfea66a4787c6856933cb257d3d28d11-
Oracle Linux 9 (x86_64) libXpm-3.5.13-8.el9_1.src.rpma8ee7c28cab43a91a465a718413d26b5-
libXpm-3.5.13-8.el9_1.i686.rpm248acf390065d028efd804f28ac7943f-
libXpm-3.5.13-8.el9_1.x86_64.rpm074b4c36a8fd28b4e9f2e0ef4728d8ec-
libXpm-devel-3.5.13-8.el9_1.i686.rpmf4f8fdc21fc872fe175e879adcbf5ffc-
libXpm-devel-3.5.13-8.el9_1.x86_64.rpm7d036cb9080eb9103299aa96cceefd57-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete