安全公告详情

NS-SA-2021-0158

2021-09-24 11:21:19

简介

important: libexif/openssl security update

严重级别

important

主题

An update for libexif/openssl is now available for NewStart CGSL MAIN 5.05/CGSL CORE 5.05.
NewStart Security has rated this update as having a security impact of important. A Common Vunlnerability Scoring System(CVSS)base score, which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.

详细描述

libexif: API Documentation for programmers wishing to use libexif in their programs.
openssl: The OpenSSL toolkit provides support for secure communications between machines. OpenSSL includes a certificate management tool and shared libraries which provide various cryptographic algorithms and protocols.


Security Fix(es):
libexif: In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774(CVE-2019-9278)
libexif: _entry_get_value in exif-entry.c in libexif 0.6.21 has a divide-by-zero error.(CVE-2020-12767)
libexif: An issue was discovered in libexif before 0.6.22. Use of uninitialized memory in EXIF Makernote handling could lead to crashes and potential use-after-free conditions.(CVE-2020-13113)
libexif: An issue was discovered in libexif before 0.6.22. An unrestricted size in handling Canon EXIF MakerNote data could lead to consumption of large amounts of compute time for decoding EXIF data.(CVE-2020-13114)
libexif: In exif_entry_get_value of exif-entry.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-147140917(CVE-2020-0182)
libexif: In exif_data_save_data_entry of exif-data.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-1487051(CVE-2020-0093)
libexif: bugfix
openssl: A null pointer dereference flaw was found in openssl. A remote attacker, able to control the arguments of the GENERAL_NAME_cmp function, could cause the application, compiled with openssl to crash resulting in a denial of service. The highest threat from this vulnerability is to system availability.(CVE-2020-1971)
openssl: bugfix


Solution:
For details on how to apply this update, which includes the changes described in this advisory, refer to:
http://security.gd-linux.com/how_to_apply_patch.html
Remember the build tag is 5.05.F11B5.

影响组件

  • libexif
  • openssl

影响产品

  • CGSL MAIN 5.05
  • CGSL CORE 5.05

更新包

{"fix":[{"product":"CGSL MAIN 5.05","pkgs":[{"binary":["libexif-doc-0.6.22-1.el7.x86_64.rpm","libexif-devel-0.6.22-1.el7.x86_64.rpm","libexif-0.6.22-1.el7.x86_64.rpm"],"source":"libexif-0.6.22-1.el7.src.rpm"},{"binary":["openssl-perl-1.0.2k-21.el7_9.cgslv5_5.x86_64.rpm","openssl-static-1.0.2k-21.el7_9.cgslv5_5.x86_64.rpm","openssl-libs-1.0.2k-21.el7_9.cgslv5_5.x86_64.rpm","openssl-devel-1.0.2k-21.el7_9.cgslv5_5.x86_64.rpm","openssl-1.0.2k-21.el7_9.cgslv5_5.x86_64.rpm"],"source":"openssl-1.0.2k-21.el7_9.cgslv5_5.src.rpm"}]},{"product":"CGSL CORE 5.05","pkgs":[{"binary":["libexif-doc-0.6.22-1.el7.x86_64.rpm","libexif-devel-0.6.22-1.el7.x86_64.rpm","libexif-0.6.22-1.el7.x86_64.rpm"],"source":"libexif-0.6.22-1.el7.src.rpm"},{"binary":["openssl-devel-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm","openssl-crypto-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm","openssl-perl-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm","openssl-static-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm","openssl-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm","openssl-libs-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.x86_64.rpm"],"source":"openssl-1.0.2k-21.el7.cgslv5_5.0.1.gd8dcd90.lite.src.rpm"}]}]}

CVE

参考