日韩无码专区,日韩免费视频,日韩无码电影,日产精品一线二线三线芒果,日产精品一线二线三线芒,国精产品999国精产品视频

?
安全公告-關(guān)于openEuler系統(tǒng)的zziplib的更新

簡(jiǎn)介

An update for zziplib is now available for openEuler-22.03-LTS-SP1,openEuler-24.03-LTS,openEuler-22.03-LTS-SP4,openEuler-22.03-LTS-SP3,openEuler-20.03-LTS-SP4

嚴(yán)重級(jí)別

High

主題

An update for zziplib is now available for openEuler-22.03-LTS-SP1,openEuler-24.03-LTS,openEuler-22.03-LTS-SP4,openEuler-22.03-LTS-SP3,openEuler-20.03-LTS-SP4.

openEuler Security has rated this update as having a security impact of high. A Common Vunlnerability Scoring System(CVSS)base score,which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.

描述

The zziplib is a lightweight library to easily extract data from zip files. Applications can bundle files into a single zip archive and access them. The implementation is based only on the (free) subset of compression with the zlib algorithm which is actually used by the zip/unzip tools.

Security Fix(es):

A Stack Buffer Overflow vulnerability in zziplibv 0.13.77 allows attackers to cause a denial of service via the __zzip_fetch_disk_trailer() function at /zzip/zip.c.(CVE-2024-39134)

影響組件

Zziplib

CVE

CVE-2024-39134

參考鏈接

https://nvd.nist.gov/vuln/detail/CVE-2024-39134

后續(xù)改善計(jì)劃

寶德計(jì)算機(jī)會(huì)持續(xù)跟進(jìn)該漏洞的最新動(dòng)態(tài),請(qǐng)關(guān)注寶德計(jì)算機(jī)官網(wǎng)、官微公告有任何關(guān)于此漏洞修復(fù)的問題,可以通過以下方式聯(lián)系我們:

寶德計(jì)算機(jī)售后咨詢熱線:4008-870-872

寶德PSIRT郵箱:psirt@powerleadercom.cn

寶德計(jì)算機(jī)官網(wǎng):http://www.powerleadercom.cn

? 欢迎光临: 辽阳市| 定襄县| 金寨县| 茌平县| 泾阳县| 平遥县| 盐亭县| 黎平县| 涪陵区| 濮阳县| 达拉特旗| 稻城县| 河津市| 灵璧县| 汝州市| 济宁市| 白水县| 抚远县| 楚雄市| 昌吉市| 任丘市| 会泽县| 奇台县| 肥城市| 土默特左旗| 伊春市| 吐鲁番市| 遂川县| 扎鲁特旗| 文山县| 万源市| 红安县| 正蓝旗| 紫金县| 柏乡县| 东平县| 苍梧县| 外汇| 左云县| 长汀县| 长沙县|