From 3108ce8586e6da41676fd6bed4101da8f4af8e31 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Sun, 16 Oct 2022 19:53:15 +0100 Subject: gentoo auto-resync : 16:10:2022 - 19:53:15 --- metadata/glsa/glsa-202210-01.xml | 42 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 42 insertions(+) create mode 100644 metadata/glsa/glsa-202210-01.xml (limited to 'metadata/glsa/glsa-202210-01.xml') diff --git a/metadata/glsa/glsa-202210-01.xml b/metadata/glsa/glsa-202210-01.xml new file mode 100644 index 000000000000..2fdb25ec8e09 --- /dev/null +++ b/metadata/glsa/glsa-202210-01.xml @@ -0,0 +1,42 @@ + + + + Open Asset Import Library ("assimp"): Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in Open Asset Import Library, the worst of which could result in denial of service. + assimp + 2022-10-16 + 2022-10-16 + 830374 + remote + + + 5.2.2 + 5.2.2 + + + +

Open Asset Import Library is a library to import and export various 3d-model-formats including scene-post-processing to generate missing render data.

+
+ +

Multiple vulnerabilities have been discovered in Fetchmail, the worst of which could result in email disclosure to third parties.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All Open Asset Import Library users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=media-libs/assimp-5.2.2" + +
+ + CVE-2021-45948 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3