UbuntuUpdates.org

Package "libpano13-3"

Name: libpano13-3

Description:

panorama tools library

Latest version: 2.9.19+dfsg-3ubuntu0.20.04.1
Release: focal (20.04)
Level: security
Repository: universe
Head package: libpano13
Homepage: http://panotools.sourceforge.net/

Links


Download "libpano13-3"


Other versions of "libpano13-3" in Focal

Repository Area Version
base universe 2.9.19+dfsg-3
updates universe 2.9.19+dfsg-3ubuntu0.20.04.1

Changelog

Version: 2.9.19+dfsg-3ubuntu0.20.04.1 2023-06-14 14:07:12 UTC

  libpano13 (2.9.19+dfsg-3ubuntu0.20.04.1) focal-security; urgency=medium

  * SECURITY UPDATE: use of externally-controlled format string in PTcrop's
    output filename generation
    - debian/patches/CVE-2021-20307/*: Updates the help page, and checks the
      output prefix to not have "%" characters.
    - CVE-2021-20307
  * SECURITY UPDATE: invalid pointer dereferencing
    - debian/patches/CVE-2021-33293.patch: Checks the result of a strchr to
      not be NULL, avoiding a further dereferencing of an invalid pointer.
    - CVE-2021-33293

 -- George-Andrei Iosif <email address hidden> Mon, 12 Jun 2023 16:19:14 +0300

CVE-2021-20307 Format string vulnerability in panoFileOutputNamesCreate() in libpano13 2.9.20~rc2+dfsg-3 and earlier can lead to read and write arbitrary memory val
CVE-2021-33293 Panorama Tools libpano13 v2.9.20 was discovered to contain an out-of-bounds read in the function panoParserFindOLine() in parser.c.



About   -   Send Feedback to @ubuntu_updates