Updated libvpx packages fix security vulnerability
Publication date: 02 Oct 2023Modification date: 02 Oct 2023
Type: security
Affected Mageia releases : 8 , 9
CVE: CVE-2023-5217
Description
Heap buffer overflow in vp8 encoding in libvpx allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
References
SRPMS
8/core
- libvpx-1.9.0-1.1.mga8
9/core
- libvpx-1.12.0-1.1.mga9