Skip to content
This repository has been archived by the owner on Oct 10, 2023. It is now read-only.

0.238.0

Compare
Choose a tag to compare
@cf-buildpacks-eng cf-buildpacks-eng released this 17 May 21:02
· 132 commits to main since this release

Notably, this release addresses:

USN-4957-1 USN-4957-1: DjVuLibre vulnerabilities:

  • CVE-2021-32493: heap buffer overflow in function DJVU::GBitmap::decode() via crafted djvu file
  • CVE-2021-32490: out of bounds write in function DJVU::filter_bv() via crafted djvu file
  • CVE-2021-3500: Stack overflow in function DJVU::DjVuDocument::get_djvu_file() via crafted djvu file
  • CVE-2021-32492: Out of bounds read in function DJVU::DataPool::has_data() via crafted djvu file
  • CVE-2021-32491: Integer overflow in function render() in tools/ddjvu via crafted djvu file
+ii  distro-info            0.18ubuntu0.18.04.1 amd64 provides information about the distributions' releases
-ii  libdjvulibre-dev:amd64 3.5.27.1-8ubuntu0.2 amd64 Development files for the DjVu image format
-ii  libdjvulibre-text      3.5.27.1-8ubuntu0.2 all   Linguistic support files for libdjvulibre
-ii  libdjvulibre21:amd64   3.5.27.1-8ubuntu0.2 amd64 Runtime support for the DjVu image format
+ii  libdjvulibre-dev:amd64 3.5.27.1-8ubuntu0.3 amd64 Development files for the DjVu image format
+ii  libdjvulibre-text      3.5.27.1-8ubuntu0.3 all   Linguistic support files for libdjvulibre
+ii  libdjvulibre21:amd64   3.5.27.1-8ubuntu0.3 amd64 Runtime support for the DjVu image format
-ii  linux-libc-dev:amd64   4.15.0-142.146      amd64 Linux Kernel Headers for development
+ii  linux-libc-dev:amd64   4.15.0-143.147      amd64 Linux Kernel Headers for development
+ii  python3-pkg-resources  39.0.1-2            all   Package Discovery and Resource Access using pkg_resources
-ii  ubuntu-advantage-tools 17                  all   management tools for Ubuntu Advantage
+ii  ubuntu-advantage-tools 27.0.2~18.04.1      amd64 management tools for Ubuntu Advantage