UbuntuUpdates.org

Package "vte2.91"

Name: vte2.91

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • GObject introspection data for the VTE library
  • Terminal emulator widget for GTK+ 3.0 - runtime files
  • Terminal emulator widget for GTK+ 3.0 - common files
  • Terminal emulator widget for GTK+ 3.0 - development files

Latest version: 0.60.3-0ubuntu1~20.5
Release: focal (20.04)
Level: security
Repository: main

Links



Other versions of "vte2.91" in Focal

Repository Area Version
base main 0.60.1-1ubuntu1
updates main 0.60.3-0ubuntu1~20.5

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 0.60.3-0ubuntu1~20.5 2024-06-13 14:07:09 UTC

  vte2.91 (0.60.3-0ubuntu1~20.5) focal-security; urgency=medium

  * SECURITY UPDATE: DoS via window resize escape sequences
    - debian/patches/CVE-2024-37535-1.patch: Restrict resize request to
      sane numbers in src/vteseq.cc.
    - debian/patches/CVE-2024-37535-2.patch: add safety limit to widget
      size requests in src/vtegtk.cc.
    - CVE-2024-37535

 -- Marc Deslauriers <email address hidden> Wed, 12 Jun 2024 10:33:05 -0400

CVE-2024-37535 GNOME VTE before 0.76.3 allows an attacker to cause a denial of service (memory consumption) via a window resize escape sequence, a related issue to



About   -   Send Feedback to @ubuntu_updates