A heap-based buffer overflow exists in the qrreadermatch_centers function of ZBar 0.23.90. Specially crafted QR codes may lead to information disclosure and/or arbitrary code execution. To trigger this vulnerability, an attacker can digitally input the malicious QR code, or prepare it to be physically scanned by the vulnerable scanner.
{ "ubuntu_priority": "medium", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "libbarcode-zbar-perl", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libbarcode-zbar-perl-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbar-dev", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbar-dev-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbar0", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbar0-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbargtk-dev", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbargtk-dev-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbargtk0", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbargtk0-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbarqt-dev", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbarqt-dev-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbarqt0", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "libzbarqt0-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "python-zbar", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "python-zbarpygtk", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "zbar-dbg", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "zbar-tools", "binary_version": "0.10+doc-10ubuntu1+esm1" }, { "binary_name": "zbar-tools-dbgsym", "binary_version": "0.10+doc-10ubuntu1+esm1" } ] }
{ "ubuntu_priority": "medium", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "libbarcode-zbar-perl", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbar-dev", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbar0", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbargtk-dev", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbargtk0", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbarqt-dev", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "libzbarqt0", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "python-zbar", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "python-zbarpygtk", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "zbar-dbg", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" }, { "binary_name": "zbar-tools", "binary_version": "0.10+doc-10.1ubuntu0.1~esm1" } ] }
{ "ubuntu_priority": "medium", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "libbarcode-zbar-perl", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libbarcode-zbar-perl-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbar-dev", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbar0", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbar0-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbargtk-dev", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbargtk0", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbargtk0-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbarqt-dev", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbarqt0", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "libzbarqt0-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "python3-zbar", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "python3-zbar-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbar-tools", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbar-tools-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbarcam-gtk", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbarcam-gtk-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbarcam-qt", "binary_version": "0.23-1.3ubuntu0.1~esm1" }, { "binary_name": "zbarcam-qt-dbgsym", "binary_version": "0.23-1.3ubuntu0.1~esm1" } ] }
{ "ubuntu_priority": "medium", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_name": "libbarcode-zbar-perl", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libbarcode-zbar-perl-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbar-dev", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbar0", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbar0-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbargtk-dev", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbargtk0", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbargtk0-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbarqt-dev", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbarqt0", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "libzbarqt0-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "python3-zbar", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "python3-zbar-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbar-tools", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbar-tools-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbarcam-gtk", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbarcam-gtk-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbarcam-qt", "binary_version": "0.23.92-4ubuntu0.1~esm1" }, { "binary_name": "zbarcam-qt-dbgsym", "binary_version": "0.23.92-4ubuntu0.1~esm1" } ] }
{ "ubuntu_priority": "medium", "availability": "No subscription required", "binaries": [ { "binary_name": "gir1.2-zbar-1.0", "binary_version": "0.23.92-9" }, { "binary_name": "libbarcode-zbar-perl", "binary_version": "0.23.92-9" }, { "binary_name": "libbarcode-zbar-perl-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "libzbar-dev", "binary_version": "0.23.92-9" }, { "binary_name": "libzbar0", "binary_version": "0.23.92-9" }, { "binary_name": "libzbar0-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "libzbargtk-dev", "binary_version": "0.23.92-9" }, { "binary_name": "libzbargtk0", "binary_version": "0.23.92-9" }, { "binary_name": "libzbargtk0-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "libzbarqt-dev", "binary_version": "0.23.92-9" }, { "binary_name": "libzbarqt0", "binary_version": "0.23.92-9" }, { "binary_name": "libzbarqt0-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "python3-zbar", "binary_version": "0.23.92-9" }, { "binary_name": "python3-zbar-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "zbar-tools", "binary_version": "0.23.92-9" }, { "binary_name": "zbar-tools-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "zbarcam-gtk", "binary_version": "0.23.92-9" }, { "binary_name": "zbarcam-gtk-dbgsym", "binary_version": "0.23.92-9" }, { "binary_name": "zbarcam-qt", "binary_version": "0.23.92-9" }, { "binary_name": "zbarcam-qt-dbgsym", "binary_version": "0.23.92-9" } ] }