[CLSA-2023:1696970439] libwebp: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2023-10-10
Description:
- CVE-2018-25013, CVE-2018-25014: wait for all threads to be done in DecodeRemaining - CVE-2023-1999: fix a double free error
Updated packages:
  • libwebp-1.0.0-5.el8.tuxcare.els2.i686.rpm
    sha:5db0032ae49f4716e32448b0161bcee832ac32c2
  • libwebp-1.0.0-5.el8.tuxcare.els2.x86_64.rpm
    sha:cd3d701dc9d89eb1eca9c3a54979b7e902e19b7b
  • libwebp-devel-1.0.0-5.el8.tuxcare.els2.i686.rpm
    sha:9d57f834583339dfe95383c06527aa292e6bdaf7
  • libwebp-devel-1.0.0-5.el8.tuxcare.els2.x86_64.rpm
    sha:5f58ff31e6327995a10588cfe57d3a052ec76bec
  • libwebp-java-1.0.0-5.el8.tuxcare.els2.x86_64.rpm
    sha:f992de4e734a5c7e2bec3d67079961185fe9e13a
  • libwebp-tools-1.0.0-5.el8.tuxcare.els2.x86_64.rpm
    sha:ac6443bf66dcfaa5259a9be2de9366d62b923eec
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.