Fedora Linux 8568 Published by

A mingw-djvulibre security update has been released for Fedora 33.



SECURITY: Fedora 33 Update: mingw-djvulibre-3.5.28-1.fc33


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2021-6422a16aed
2021-07-15 01:05:48.241204
--------------------------------------------------------------------------------

Name : mingw-djvulibre
Product : Fedora 33
Version : 3.5.28
Release : 1.fc33
URL :   http://djvu.sourceforge.net/
Summary : MinGW Windows djvulibre library
Description :
MinGW Windows djvulibre library.

--------------------------------------------------------------------------------
Update Information:

Update to djvulibre-3.5.28, see   https://sourceforge.net/p/djvu/djvulibre-
git/ci/release.3.5.28/tree/NEWS for details.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jul 6 2021 Sandro Mani - 3.5.28-1
- Update to 3.5.28
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #1977429 - CVE-2021-3630 mingw-djvulibre: djvulibre: out-of-bounds write in DJVU::DjVuTXT::decode() in DjVuText.cpp [fedora-all]
  https://bugzilla.redhat.com/show_bug.cgi?id=1977429
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2021-6422a16aed' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys