[ALSA-2020:1708] Moderate: liblouis security and bug fix update
Type:
security
Severity:
moderate
Release date:
2021-11-12
Description:
Liblouis is an open source braille translator and back-translator named in honor of Louis Braille. It features support for computer and literary braille, supports contracted and uncontracted translation for many languages and has support for hyphenation. New languages can easily be added through tables that support a rule or dictionary based approach. Liblouis also supports math braille (Nemeth and Marburg). Security Fix(es): * liblouis: Stack-based buffer overflow in function includeFile in compileTranslationTable.c (CVE-2018-11684) * liblouis: Stack-based buffer overflow in function compileHyphenation in compileTranslationTable.c (CVE-2018-11685) * liblouis: Segmentation fault in logging.c:lou_logPrint() (CVE-2018-11577) * liblouis: Stack-based buffer overflow in compileTranslationTable.c (CVE-2018-12085) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 liblouis-2.6.2-21.el8.aarch64.rpm 46e2d605266a930a88775aefdb1b13c49fc319caa901a2ee370998cef8598702
i686 liblouis-2.6.2-21.el8.i686.rpm 8e292c98085d077df54d283de4b6072f42a5d5cb3768c9e2f9f2e6447996a251
noarch python3-louis-2.6.2-21.el8.noarch.rpm c4e903f72e4f8063babcb656b929ceea92795de1cc3c5b1e8efcff9f60ae00a7
ppc64le liblouis-2.6.2-21.el8.ppc64le.rpm 710b13d03f8091b8adf8543624ab17e7cc9ad764e0b5a695cf0a6ae02e3f907d
x86_64 liblouis-2.6.2-21.el8.x86_64.rpm b20cc6dcac328c800e0e020fd4be50b7b4156751eb6906a316a2bb8bb676816c
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.