Package "djvuserve"

Name: djvuserve


CGI program for unbundling DjVu files on the fly

Latest version:
Release: groovy (20.10)
Level: security
Repository: universe
Head package: djvulibre
Homepage: http://djvu.sourceforge.net/


Download "djvuserve"

Other versions of "djvuserve" in Groovy

Repository Area Version
base universe
updates universe


Version: 2021-05-17 18:06:30 UTC

  djvulibre ( groovy-security; urgency=medium

  * SECURITY UPDATE: Stack overflow
    - debian/patches/CVE-2021-3500.patch: prevent recursion in
      libdjvu/DjVuPort.cpp, libdjvu/DjVuPort.h.
    - CVE-2021-3500
  * SECURITY UPDATE: Out of bounds write
    - debian/patches/CVE-2021-32490.patch: add checks to
    - CVE-2021-32490
  * SECURITY UPDATE: Integer overflow
    - debian/patches/CVE-2021-32491.patch: check for overflow in
    - CVE-2021-32491
  * SECURITY UPDATE: Out of bounds read
    - debian/patches/CVE-2021-32492.patch: check pool in
    - CVE-2021-32492
  * SECURITY UPDATE: Heap buffer overflow
    - debian/patches/CVE-2021-32493.patch: check row size in
    - CVE-2021-32493
  * debian/patches: rename debian-changes to changes.patch to simplify

 -- Marc Deslauriers <email address hidden> Mon, 17 May 2021 09:16:38 -0400

About   -   Send Feedback to @ubuntu_updates