ALSA-2025:1338

Source
https://errata.almalinux.org/8/ALSA-2025-1338.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux8/ALSA-2025:1338.json
JSON Data
https://api.test.osv.dev/v1/vulns/ALSA-2025:1338
Related
Published
2025-02-12T00:00:00Z
Modified
2025-02-18T12:49:22Z
Summary
Moderate: gcc-toolset-14-gcc security update
Details

The gcc-toolset-14-gcc package contains the GNU Compiler Collection version 14.

Security Fix(es):

  • jquery: Untrusted code execution via <option> tag in HTML passed to DOM manipulation methods (CVE-2020-11023)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:8 / gcc-toolset-14-gcc

Package

Name
gcc-toolset-14-gcc
Purl
pkg:rpm/almalinux/gcc-toolset-14-gcc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-gcc-c++

Package

Name
gcc-toolset-14-gcc-c++
Purl
pkg:rpm/almalinux/gcc-toolset-14-gcc-c%2B%2B

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-gcc-gfortran

Package

Name
gcc-toolset-14-gcc-gfortran
Purl
pkg:rpm/almalinux/gcc-toolset-14-gcc-gfortran

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-gcc-plugin-annobin

Package

Name
gcc-toolset-14-gcc-plugin-annobin
Purl
pkg:rpm/almalinux/gcc-toolset-14-gcc-plugin-annobin

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-gcc-plugin-devel

Package

Name
gcc-toolset-14-gcc-plugin-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-gcc-plugin-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libasan-devel

Package

Name
gcc-toolset-14-libasan-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libasan-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libatomic-devel

Package

Name
gcc-toolset-14-libatomic-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libatomic-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libgccjit

Package

Name
gcc-toolset-14-libgccjit
Purl
pkg:rpm/almalinux/gcc-toolset-14-libgccjit

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libgccjit-devel

Package

Name
gcc-toolset-14-libgccjit-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libgccjit-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libitm-devel

Package

Name
gcc-toolset-14-libitm-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libitm-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-liblsan-devel

Package

Name
gcc-toolset-14-liblsan-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-liblsan-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libquadmath-devel

Package

Name
gcc-toolset-14-libquadmath-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libquadmath-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libstdc++-devel

Package

Name
gcc-toolset-14-libstdc++-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libstdc%2B%2B-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libstdc++-docs

Package

Name
gcc-toolset-14-libstdc++-docs
Purl
pkg:rpm/almalinux/gcc-toolset-14-libstdc%2B%2B-docs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libtsan-devel

Package

Name
gcc-toolset-14-libtsan-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libtsan-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-libubsan-devel

Package

Name
gcc-toolset-14-libubsan-devel
Purl
pkg:rpm/almalinux/gcc-toolset-14-libubsan-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / gcc-toolset-14-offload-nvptx

Package

Name
gcc-toolset-14-offload-nvptx
Purl
pkg:rpm/almalinux/gcc-toolset-14-offload-nvptx

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / libasan8

Package

Name
libasan8
Purl
pkg:rpm/almalinux/libasan8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / liblsan

Package

Name
liblsan
Purl
pkg:rpm/almalinux/liblsan

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10

AlmaLinux:8 / libtsan2

Package

Name
libtsan2
Purl
pkg:rpm/almalinux/libtsan2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
14.2.1-7.1.el8_10