Advisories ยป MGASA-2026-0344

Updated jbig2dec packages fix security vulnerabilities

Publication date: 31 Aug 2026
Modification date: 31 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2023-46361 , CVE-2026-38076

Description

Artifex Software jbig2dec v0.20 was discovered to contain a SEGV
vulnerability via jbig2_error at /jbig2dec/jbig2.c. (CVE-2023-46361)
An integer overflow in the jbig2_arith_iaid_ctx_new() function of
Artifex commit cc37d0 allows attackers to cause a Denial of Service
(DoS) via a crafted input. (CVE-2026-38076)
                

References

SRPMS

10/core

9/core