Overview

Request 1066123 accepted

- Fixed in 1.21.1:
+ avoid integer overflow in WavPack header handling code
(boo#1201688 CVE-2022-1920).
+ fix integer overflow resulting in heap corruption
(boo#1201693 CVE-2022-1921).
+ fix integer overflows in zlib/bz2/etc. decompression
(boo#1201702 boo#1201704 boo#1201706 boo#1201707 boo#1201708
CVE-2022-1922 CVE-2022-1923 CVE-2022-1924 CVE-2022-1925
CVE-2022-2122).

Request History
Antonio Larrosa's avatar

alarrosa created request

- Fixed in 1.21.1:
+ avoid integer overflow in WavPack header handling code
(boo#1201688 CVE-2022-1920).
+ fix integer overflow resulting in heap corruption
(boo#1201693 CVE-2022-1921).
+ fix integer overflows in zlib/bz2/etc. decompression
(boo#1201702 boo#1201704 boo#1201706 boo#1201707 boo#1201708
CVE-2022-1922 CVE-2022-1923 CVE-2022-1924 CVE-2022-1925
CVE-2022-2122).


GNOME Review Bot's avatar

gnome-review-bot accepted review

Check script succeeded


GNOME Review Bot's avatar

gnome-review-bot approved review

Check script succeeded


Antonio Larrosa's avatar

alarrosa accepted request

openSUSE Build Service is sponsored by