ELSA-2023-5537

ELSA-2023-5537 - libvpx security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-10-10

Description


[1.7.0-10]
- Heap buffer overflow in vp8 encoding in libvpx (CVE-2023-5217)
Resolves: rhbz#2241191
- crash related to VP9 encoding in libvpx (CVE-2023-44488)
Resolves: rhbz#2241806


Related CVEs


CVE-2023-5217
CVE-2023-44488

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libvpx-1.7.0-10.el8_8.src.rpm802a3af3e73f9356763347d3dc5f2814dddabfd840f864b7ec8b73a19a364dba-ol8_aarch64_appstream
libvpx-1.7.0-10.el8_8.src.rpm802a3af3e73f9356763347d3dc5f2814dddabfd840f864b7ec8b73a19a364dba-ol8_aarch64_codeready_builder
libvpx-1.7.0-10.el8_8.aarch64.rpmcd6fdee4ce4c094cd021ab62578d31992e8f5594e65fc2bd97ac3f9cc155e588-ol8_aarch64_appstream
libvpx-devel-1.7.0-10.el8_8.aarch64.rpm7abb672fa6988deb947b1543bb90c9d66325b79dd304d740ca43720c9f7b92b4-ol8_aarch64_codeready_builder
Oracle Linux 8 (x86_64) libvpx-1.7.0-10.el8_8.src.rpm802a3af3e73f9356763347d3dc5f2814dddabfd840f864b7ec8b73a19a364dba-ol8_x86_64_appstream
libvpx-1.7.0-10.el8_8.src.rpm802a3af3e73f9356763347d3dc5f2814dddabfd840f864b7ec8b73a19a364dba-ol8_x86_64_codeready_builder
libvpx-1.7.0-10.el8_8.i686.rpm53a361b36770d43985d71343b9df42164ca8b7b4209cc3cf369c4540f7b2b971-ol8_x86_64_appstream
libvpx-1.7.0-10.el8_8.x86_64.rpm61628832bccbacce56759cced2f699d761e922a4ca855ced8ffaff716616dd48-ol8_x86_64_appstream
libvpx-devel-1.7.0-10.el8_8.i686.rpm2d1433aae278f422df32fa0f2b9cc4c159a719337e88fc7433b9f4d313e3f720-ol8_x86_64_codeready_builder
libvpx-devel-1.7.0-10.el8_8.x86_64.rpm4e6855be5a8ec5f8adb347334824130ddf03ebd4fcc66ea943c1ae0780911360-ol8_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete