From 37e4aa60381e73a83d87f0ee892c3e7145abdf64 Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Mon, 12 Aug 2024 07:17:27 +0000 Subject: [ GLSA 202408-29 ] MuPDF: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/803305 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202408-29.xml | 43 +++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 43 insertions(+) create mode 100644 glsa-202408-29.xml diff --git a/glsa-202408-29.xml b/glsa-202408-29.xml new file mode 100644 index 00000000..af5ebf38 --- /dev/null +++ b/glsa-202408-29.xml @@ -0,0 +1,43 @@ + + + + MuPDF: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in MuPDF, the worst of which could lead to arbitrary code execution. + mupdf + 2024-08-12 + 2024-08-12 + 803305 + local + + + 1.20.0 + 1.20.0 + + + +

A lightweight PDF, XPS, and E-book viewer.

+
+ +

Multiple vulnerabilities have been discovered in MuPDF. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All MuPDF users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=app-text/mupdf-1.20.0" + +
+ + CVE-2021-4216 + CVE-2021-37220 + + graaff + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad