Fedora Linux 8782 Published by

A libass security update has been released for Fedora 34.



SECURITY: Fedora 34 Update: libass-0.15.2-1.fc34


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-2af150223a
2022-03-25 22:04:41.514595
--------------------------------------------------------------------------------

Name : libass
Product : Fedora 34
Version : 0.15.2
Release : 1.fc34
URL :   https://github.com/libass
Summary : Portable library for SSA/ASS subtitles rendering
Description :
Libass is a portable library for SSA/ASS subtitles rendering.

--------------------------------------------------------------------------------
Update Information:

New version Security fix for CVE-2020-36430
--------------------------------------------------------------------------------
ChangeLog:

* Wed Mar 16 2022 Martin Sourada - 0.15.2-1
- New version
* Thu Jul 22 2021 Fedora Release Engineering - 0.14.0-8
- Rebuilt for   https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #1985246 - CVE-2020-36430 libass: heap-based buffer overflow in decode_chars because the wrong integer data type is used for subtraction
  https://bugzilla.redhat.com/show_bug.cgi?id=1985246
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-2af150223a' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________