[ALSA-2024:3066] Moderate: exempi security update
Type:
security
Severity:
moderate
Release date:
2024-05-29
Description:
Exempi provides a library for easy parsing of XMP metadata. Security Fix(es): * exempi: denial of service via opening of crafted audio file with ID3V2 frame (CVE-2020-18651) * exempi: denial of service via opening of crafted webp file (CVE-2020-18652) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 exempi-devel-2.4.5-4.el8.aarch64.rpm 7521a079cd788772c4cddc0a74b5207f70a0d08ca5aeaed1b745312abe301c4e
aarch64 exempi-2.4.5-4.el8.aarch64.rpm 959adca76eeb9e051b472880fa2e90b6c3176fc06da8b03bb0907e2d001ea6db
i686 exempi-2.4.5-4.el8.i686.rpm 6fa8cefb9b9bd962a9987f40a922fbc223912a18c4b5ba62767d13995574db07
i686 exempi-devel-2.4.5-4.el8.i686.rpm a70f5208377e06912a863abd5478e28f557e01bc564c7e6f4fc67f38e394dc29
ppc64le exempi-devel-2.4.5-4.el8.ppc64le.rpm 47898755de1db88daae335e8bc30ca2d54a95b830bc6b140d10f98b7b2332293
ppc64le exempi-2.4.5-4.el8.ppc64le.rpm e2e8090e97e0cbc472ca66fe4093a01c4fb6a130f6ba1d04bc63e81f516808dc
s390x exempi-2.4.5-4.el8.s390x.rpm 664c44d28e72adc835fbd13ae4ffa4606724f2e5aa0e4dcbe6c1db5b0628bc23
s390x exempi-devel-2.4.5-4.el8.s390x.rpm a2c90a2dc126d6e5349f892f8e627a1af376a22032fb2c09600a1af2ae7b0b3f
x86_64 exempi-devel-2.4.5-4.el8.x86_64.rpm 07cc9de2b2ddfb3c6acc9303da6962820396a116da10299f5a11ef2794edf881
x86_64 exempi-2.4.5-4.el8.x86_64.rpm 757c33f4b5da9832a3f572d81f9826f2379bf926b4a5a04a577b6ed88fedb2c2
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.