Aggregator

USN-8054-1: DjVuLibre vulnerabilities

3 weeks 6 days ago
It was discovered that DjVuLibre could be forced to execute a division by zero in certain instances. A remote attacker could possibly use this issue to cause applications to stop responding or crash, resulting in a denial of service. (CVE-2021-46312) It was discovered that DjVuLibre incorrectly handled certain memory operations. If a user or automated system were tricked into processing a specially crafted DjVu file, a remote attacker could cause applications to stop responding or crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2025-53367)

avr-binutils-2.45-4.fc43.1

3 weeks 6 days ago
FEDORA-2026-10cccbf560 Packages in this update:
  • avr-binutils-2.45-4.fc43.1
Update description:
  • fix CVE-2025-11083: heap-based overflow
  • fix CVE-2025-11082: heap-based overflow
  • fix CVE-2025-11081: out-of-bounds read

avr-binutils-2.45-4.fc42.1

3 weeks 6 days ago
FEDORA-2026-405dab5af2 Packages in this update:
  • avr-binutils-2.45-4.fc42.1
Update description:
  • fix CVE-2025-11083: heap-based overflow
  • fix CVE-2025-11082: heap-based overflow
  • fix CVE-2025-11081: out-of-bounds read