UbuntuUpdates.org

Package "djvuserve"

Name: djvuserve

Description:

CGI program for unbundling DjVu files on the fly

Latest version: 3.5.28-2ubuntu0.25.04.1
Release: plucky (25.04)
Level: security
Repository: universe
Head package: djvulibre
Homepage: http://djvu.sourceforge.net/

Links


Download "djvuserve"


Other versions of "djvuserve" in Plucky

Repository Area Version
base universe 3.5.28-2build4
updates universe 3.5.28-2ubuntu0.25.04.1

Changelog

Version: 3.5.28-2ubuntu0.25.04.1 2025-07-09 15:07:30 UTC

  djvulibre (3.5.28-2ubuntu0.25.04.1) plucky-security; urgency=medium

  * SECURITY UPDATE: code execution via OOB write
    - debian/patches/0008-*.patch: fix potential buffer overflow in
      MMRDecoder in libdjvu/MMRDecoder.cpp.
    - CVE-2025-53367

 -- Marc Deslauriers <email address hidden> Tue, 08 Jul 2025 12:51:29 -0400

CVE-2025-53367 DjVuLibre is a GPL implementation of DjVu, a web-centric format for distributing documents and images. Prior to version 3.5.29, the MMRDecoder::scanr



About   -   Send Feedback to @ubuntu_updates