Lucene search

K
rosalinuxROSA LABROSA-SA-2024-2358
HistoryFeb 20, 2024 - 10:32 a.m.

Advisory ROSA-SA-2024-2358

2024-02-2010:32:20
ROSA LAB
abf.rosalinux.ru
8
libwebp
vulnerability fix
apply filters
memory error
vp8 encoder
address sanitizer
update
rosa-chrome

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

44.7%

Software: libwebp 1.2.3
OS: ROSA-CHROME

package_evr_string: libwebp-1.2.3-1.src.rpm

CVE-ID: CVE-2023-1999
BDU-ID: None
CVE-Crit: MEDIUM
CVE-DESC.: There is a use after free/double free in libwebp. An attacker could use ApplyFiltersAndEncode() to free best.bw and assign the pointer best = Trial. The second loop will then return 0 due to a “Not enough memory” error in the VP8 encoder, the pointer is still assigned to Trial, and AddressSanitizer will attempt a double free.
CVE-STATUS: Fixed
CVE-REV: To close, run the command: sudo dnf update libwebp

OSVersionArchitecturePackageVersionFilename
ROSAanynoarchlibwebp< 1.2.3UNKNOWN

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.3 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

44.7%