MGASA-2024-0353

Source
https://advisories.mageia.org/MGASA-2024-0353.html
Import Source
https://advisories.mageia.org/MGASA-2024-0353.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2024-0353
Related
Published
2024-11-09T05:17:41Z
Modified
2024-11-09T04:36:29Z
Summary
Updated htmldoc packages fix security vulnerabilities
Details

HTMLDOC before 1.9.19 has an out-of-bounds write in parseparagraph in ps-pdf.cxx because of an attempt to strip leading whitespace from a whitespace-only node. (CVE-2024-45508) HTMLDOC v1.9.18 contains a buffer overflow in parsepre function,ps-pdf.cxx:5681. (CVE-2024-46478)

References
Credits

Affected packages

Mageia:9 / htmldoc

Package

Name
htmldoc
Purl
pkg:rpm/mageia/htmldoc?distro=mageia-9

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.9.15-3.1.mga9

Ecosystem specific

{
    "section": "core"
}