UbuntuUpdates.org

Package "djvulibre"

Name: djvulibre

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Development files for the DjVu image format
  • Linguistic support files for libdjvulibre
  • Runtime support for the DjVu image format

Latest version: 3.5.28-2ubuntu0.22.04.2
Release: jammy (22.04)
Level: updates
Repository: main

Links



Other versions of "djvulibre" in Jammy

Repository Area Version
base main 3.5.28-2build2
base universe 3.5.28-2build2
security main 3.5.28-2ubuntu0.22.04.2
security universe 3.5.28-2ubuntu0.22.04.2
updates universe 3.5.28-2ubuntu0.22.04.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.5.28-2ubuntu0.22.04.2 2026-02-23 20:07:41 UTC

  djvulibre (3.5.28-2ubuntu0.22.04.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2021-46312.patch: More Fedora patches
      (parameter validation avoid zdiv exceptions)
    - CVE-2021-46312

 -- John Breton <email address hidden> Fri, 20 Feb 2026 10:31:18 -0500

Source diff to previous version
CVE-2021-46312 An issue was discovered IW44EncodeCodec.cpp in djvulibre 3.5.28 in allows attackers to cause a denial of service via divide by zero.

Version: 3.5.28-2ubuntu0.22.04.1 2025-07-09 18:12:22 UTC

  djvulibre (3.5.28-2ubuntu0.22.04.1) jammy-security; urgency=medium

  * SECURITY UPDATE: code execution via OOB write
    - debian/patches/0008-*.patch: fix potential buffer overflow in
      MMRDecoder in libdjvu/MMRDecoder.cpp.
    - CVE-2025-53367

 -- Marc Deslauriers <email address hidden> Tue, 08 Jul 2025 12:56:00 -0400

CVE-2025-53367 DjVuLibre is a GPL implementation of DjVu, a web-centric format for distributing documents and images. Prior to version 3.5.29, the MMRDecoder::scanr



About   -   Send Feedback to @ubuntu_updates