CLSA-2023-1696970233

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2023-1696970233.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2023-1696970233
Upstream
Published
2023-10-10T20:37:18Z
Modified
2026-05-27T11:18:26.320403824Z
Summary
libwebp: Fix of 3 CVEs
Details
  • CVE-2018-25013, CVE-2018-25014: wait for all threads to be done in DecodeRemaining
  • CVE-2023-1999: fix a double free error
References

Affected packages

TuxCare:CentOS:8.4 / libwebp

Package

Name
libwebp
Purl
pkg:rpm/tuxcare/libwebp?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-5.el8.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2023-1696970233.json"

TuxCare:CentOS:8.4 / libwebp-devel

Package

Name
libwebp-devel
Purl
pkg:rpm/tuxcare/libwebp-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-5.el8.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2023-1696970233.json"

TuxCare:CentOS:8.4 / libwebp-java

Package

Name
libwebp-java
Purl
pkg:rpm/tuxcare/libwebp-java?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-5.el8.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2023-1696970233.json"

TuxCare:CentOS:8.4 / libwebp-tools

Package

Name
libwebp-tools
Purl
pkg:rpm/tuxcare/libwebp-tools?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.0.0-5.el8.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2023-1696970233.json"