UbuntuUpdates.org

Package "libpano13"

Name: libpano13

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • panorama tools library
  • panorama tools utilities
  • panorama tools library development files

Latest version: 2.9.19+dfsg-3ubuntu0.20.04.1
Release: focal (20.04)
Level: security
Repository: universe

Links



Other versions of "libpano13" in Focal

Repository Area Version
updates universe 2.9.19+dfsg-3ubuntu0.20.04.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.9.19+dfsg-3ubuntu0.20.04.1 2023-06-14 14:07:12 UTC

  libpano13 (2.9.19+dfsg-3ubuntu0.20.04.1) focal-security; urgency=medium

  * SECURITY UPDATE: use of externally-controlled format string in PTcrop's
    output filename generation
    - debian/patches/CVE-2021-20307/*: Updates the help page, and checks the
      output prefix to not have "%" characters.
    - CVE-2021-20307
  * SECURITY UPDATE: invalid pointer dereferencing
    - debian/patches/CVE-2021-33293.patch: Checks the result of a strchr to
      not be NULL, avoiding a further dereferencing of an invalid pointer.
    - CVE-2021-33293

 -- George-Andrei Iosif <email address hidden> Mon, 12 Jun 2023 16:19:14 +0300

CVE-2021-20307 Format string vulnerability in panoFileOutputNamesCreate() in libpano13 2.9.20~rc2+dfsg-3 and earlier can lead to read and write arbitrary memory val
CVE-2021-33293 Panorama Tools libpano13 v2.9.20 was discovered to contain an out-of-bounds read in the function panoParserFindOLine() in parser.c.



About   -   Send Feedback to @ubuntu_updates