Wind River Support Network

HomeDefectsLIN1021-5072
Fixed

LIN1021-5072 : Security Advisory - libxpm - CVE-2022-44617

Created: Jan 17, 2023    Updated: Jun 22, 2023
Resolved Date: Jun 22, 2023
Found In Version: 10.21.20.1
Fix Version: 10.21.20.19
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.

https://nvd.nist.gov/vuln/detail/CVE-2022-44617

CVEs


Live chat
Online