advancecomp (SL7)

Synopsis: Low: advancecomp security update
Advisory ID: SLSA-2019:2332-1
Issue Date: 2019-08-06
CVE Numbers: CVE-2019-8379
CVE-2019-8383

Security Fix(es):

* advancecomp: null pointer dereference in function be_uint32_read() in
endianrw.h (CVE-2019-8379)

* advancecomp: denial of service in function adv_png_unfilter_8 in
lib/png.c (CVE-2019-8383)

SL7
x86_64
advancecomp-1.15-21.el7.x86_64.rpm
advancecomp-debuginfo-1.15-21.el7.x86_64.rpm

– Scientific Linux Development Team