From 7785404bd292918a4afd4780ccfc36d6626a49ca Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Mon, 31 Oct 2022 03:04:34 +0000 Subject: gentoo auto-resync : 31:10:2022 - 03:04:34 --- metadata/glsa/glsa-202210-15.xml | 42 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 42 insertions(+) create mode 100644 metadata/glsa/glsa-202210-15.xml (limited to 'metadata/glsa/glsa-202210-15.xml') diff --git a/metadata/glsa/glsa-202210-15.xml b/metadata/glsa/glsa-202210-15.xml new file mode 100644 index 000000000000..6f78f4a8451e --- /dev/null +++ b/metadata/glsa/glsa-202210-15.xml @@ -0,0 +1,42 @@ + + + + GDAL: Heap Buffer Overflow + A heap buffer overflow vulnerability has been found in GDAL which could result in denial of service. + gdal + 2022-10-31 + 2022-10-31 + 830370 + remote + + + 3.4.1 + 3.4.1 + + + +

GDAL is a geospatial data abstraction library.

+
+ +

GDAL does not sufficiently sanitize input when loading PCIDSK binary segments.

+
+ +

Loading crafted PCIDSK data via GDAL could result in denial of service.

+
+ +

There is no known workaround at this time.

+
+ +

All GDAL users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=sci-libs/gdal-3.4.1" + +
+ + CVE-2021-45943 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3