ELSA-2023-5537

ELSA-2023-5537 - libvpx security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-10-10

Description


[1.7.0-10]
- Heap buffer overflow in vp8 encoding in libvpx (CVE-2023-5217)
Resolves: rhbz#2241191
- crash related to VP9 encoding in libvpx (CVE-2023-44488)
Resolves: rhbz#2241806


Related CVEs


CVE-2023-5217
CVE-2023-44488

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libvpx-1.7.0-10.el8_8.src.rpmf4b440f36be6f926a2d974104b58b5e4-ol8_aarch64_appstream
libvpx-1.7.0-10.el8_8.src.rpmf4b440f36be6f926a2d974104b58b5e4-ol8_aarch64_codeready_builder
libvpx-1.7.0-10.el8_8.aarch64.rpm8f74c5b6a579b5a4000f4176eb0ab0d8-ol8_aarch64_appstream
libvpx-devel-1.7.0-10.el8_8.aarch64.rpm64fc911a42fe5c32a12e43331d514249-ol8_aarch64_codeready_builder
Oracle Linux 8 (x86_64) libvpx-1.7.0-10.el8_8.src.rpmf4b440f36be6f926a2d974104b58b5e4-ol8_x86_64_appstream
libvpx-1.7.0-10.el8_8.src.rpmf4b440f36be6f926a2d974104b58b5e4-ol8_x86_64_codeready_builder
libvpx-1.7.0-10.el8_8.i686.rpm763d15e7e940ab096efdd713d7994c0c-ol8_x86_64_appstream
libvpx-1.7.0-10.el8_8.x86_64.rpm8b35cea891343ce9481d2a60f3a0706f-ol8_x86_64_appstream
libvpx-devel-1.7.0-10.el8_8.i686.rpmdf73a069f80a872c28b7d5cd254664c5-ol8_x86_64_codeready_builder
libvpx-devel-1.7.0-10.el8_8.x86_64.rpm360554e7ccf303bf239642c6654298d9-ol8_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete