UbuntuUpdates.org

Package "gir1.2-vte-2.91"

Name: gir1.2-vte-2.91

Description:

GObject introspection data for the VTE library

Latest version: 0.74.0-2ubuntu0.1
Release: mantic (23.10)
Level: security
Repository: main
Head package: vte2.91
Homepage: https://wiki.gnome.org/Apps/Terminal/VTE

Links


Download "gir1.2-vte-2.91"


Other versions of "gir1.2-vte-2.91" in Mantic

Repository Area Version
base main 0.74.0-2
updates main 0.74.0-2ubuntu0.1

Changelog

Version: 0.74.0-2ubuntu0.1 2024-06-13 14:07:17 UTC

  vte2.91 (0.74.0-2ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: DoS via window resize escape sequences
    - debian/patches/CVE-2024-37535-1.patch: Restrict resize request to
      sane numbers in src/vteseq.cc.
    - debian/patches/CVE-2024-37535-2.patch: add safety limit to widget
      size requests in src/vtegtk.cc.
    - CVE-2024-37535

 -- Marc Deslauriers <email address hidden> Wed, 12 Jun 2024 10:29:33 -0400

CVE-2024-37535 GNOME VTE before 0.76.3 allows an attacker to cause a denial of service (memory consumption) via a window resize escape sequence, a related issue to



About   -   Send Feedback to @ubuntu_updates