From 70e4bd5c8f26b1f2baeb5146a841273b2cb15179 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Tue, 30 May 2023 09:20:33 +0100 Subject: gentoo auto-resync : 30:05:2023 - 09:20:33 --- metadata/glsa/glsa-202305-33.xml | 85 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 85 insertions(+) create mode 100644 metadata/glsa/glsa-202305-33.xml (limited to 'metadata/glsa/glsa-202305-33.xml') diff --git a/metadata/glsa/glsa-202305-33.xml b/metadata/glsa/glsa-202305-33.xml new file mode 100644 index 000000000000..a4f315de2700 --- /dev/null +++ b/metadata/glsa/glsa-202305-33.xml @@ -0,0 +1,85 @@ + + + + OpenImageIO: Multiple Vulnerabilities + Multiple vulnerabilities have been found in OpenImageIO, the worst of which could result in arbitrary code execution. + openimageio + 2023-05-30 + 2023-05-30 + 879255 + 884085 + 888045 + remote + + + 2.4.6.0 + 2.4.6.0 + + + +

OpenImageIO is a library for reading and writing images.

+
+ +

Multiple vulnerabilities have been discovered in OpenImageIO. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All OpenImageIO users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=media-libs/openimageio-2.4.6.0" + +
+ + CVE-2022-4198 + CVE-2022-36354 + CVE-2022-38143 + CVE-2022-41639 + CVE-2022-41649 + CVE-2022-41684 + CVE-2022-41794 + CVE-2022-41837 + CVE-2022-41838 + CVE-2022-41977 + CVE-2022-41981 + CVE-2022-41988 + CVE-2022-41999 + CVE-2022-43592 + CVE-2022-43593 + CVE-2022-43594 + CVE-2022-43595 + CVE-2022-43596 + CVE-2022-43597 + CVE-2022-43598 + CVE-2022-43599 + CVE-2022-43600 + CVE-2022-43601 + CVE-2022-43602 + CVE-2022-43603 + TALOS-2022-1626 + TALOS-2022-1627 + TALOS-2022-1628 + TALOS-2022-1629 + TALOS-2022-1630 + TALOS-2022-1632 + TALOS-2022-1633 + TALOS-2022-1634 + TALOS-2022-1635 + TALOS-2022-1643 + TALOS-2022-1651 + TALOS-2022-1652 + TALOS-2022-1653 + TALOS-2022-1654 + TALOS-2022-1655 + TALOS-2022-1656 + TALOS-2022-1657 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3