drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Denial of Service in PCL
| Name: |
Denial of Service in PCL |
|
| ID: |
USN-7227-1 |
|
| Distribution: |
Ubuntu |
|
| Plattformen: |
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, Ubuntu 24.10 |
|
| Datum: |
Fr, 24. Januar 2025, 06:49 |
|
| Referenzen: |
https://www.cve.org/CVERecord?id=CVE-2024-53432 |
|
| Applikationen: |
Point Cloud Library |
|
Originalnachricht |
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --===============5187045478452450232== Content-Language: en-US Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="------------KJ0KdqTlMoDAEcmHfrS5CjiS"
This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --------------KJ0KdqTlMoDAEcmHfrS5CjiS Content-Type: multipart/mixed; boundary="------------m08844tJrd4KNaT8LZIoHcOJ"; protected-headers="v1" From: Nico Campuzano <nicolas.campuzano@canonical.com> Reply-To: Ubuntu Security <security@ubuntu.com> To: ubuntu-security-announce@lists.ubuntu.com Message-ID: <a295de82-6940-4bf2-ae5e-bc9bd35a2989@canonical.com> Subject: [USN-7227-1] PCL vulnerability
--------------m08844tJrd4KNaT8LZIoHcOJ Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: base64
========================================================================== Ubuntu Security Notice USN-7227-1 January 23, 2025
PCL vulnerability ==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS
Summary:
PCL could be made to crash if it received specially crafted input.
Software Description: - pcl: Point Cloud Library for 2D/3D image and point cloud processing
Details:
It was discovered that PCL incorrectly handled certain malformed files. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly exploit this to cause a denial of service.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.10 libpcl-io1.14 1.14.0+dfsg-3ubuntu0.2 libpcl-recognition1.14 1.14.0+dfsg-3ubuntu0.2 libpcl-visualization1.14 1.14.0+dfsg-3ubuntu0.2 pcl-tools 1.14.0+dfsg-3ubuntu0.2
Ubuntu 24.04 LTS libpcl-io1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro libpcl-recognition1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro libpcl-visualization1.14 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro pcl-tools 1.14.0+dfsg-1ubuntu0.1~esm1 Available with Ubuntu Pro
Ubuntu 22.04 LTS libpcl-io1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro libpcl-recognition1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro libpcl-visualization1.12 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro pcl-tools 1.12.1+dfsg-3ubuntu0.1~esm2 Available with Ubuntu Pro
Ubuntu 20.04 LTS libpcl-io1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro libpcl-recognition1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro libpcl-visualization1.10 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro pcl-tools 1.10.0+dfsg-5ubuntu1+esm2 Available with Ubuntu Pro
Ubuntu 18.04 LTS libpcl-io1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro libpcl-recognition1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro libpcl-visualization1.8 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro pcl-tools 1.8.1+dfsg1-2ubuntu2.18.04.1+esm1 Available with Ubuntu Pro
Ubuntu 16.04 LTS libpcl-io1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro libpcl-recognition1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro libpcl-visualization1.7 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro pcl-tools 1.7.2-14ubuntu0.1+esm1 Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.
References: https://ubuntu.com/security/notices/USN-7227-1 CVE-2024-53432
Package Information: https://launchpad.net/ubuntu/+source/pcl/1.14.0+dfsg-3ubuntu0.2
--------------m08844tJrd4KNaT8LZIoHcOJ--
--------------KJ0KdqTlMoDAEcmHfrS5CjiS Content-Type: application/pgp-signature; name="OpenPGP_signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="OpenPGP_signature.asc"
-----BEGIN PGP SIGNATURE-----
wsF5BAABCAAjFiEEKl1CaPno2Qy4/AU8lFzKVeTWQe4FAmeS4CsFAwAAAAAACgkQlFzKVeTWQe6F +hAAyrofGOTOV86WaJrLlAADPlPIUuY0A74qkfiMVOXE4Xt91QJfaVZ/EjV9fQp69uG4SnetuEzf mZ5iibaS9USx9zV8JX5IO1dRqP/t52VWbxQs0CWdVXJpP8xMz4/IMhSYyV4sDoGJydf0qeCCw17N CGybqHkaUXqvjW6Zf+hn0LekU9fdnqmusBJ/67iiWg2hjxNgynNY+CPmLv693vj/XoRjuXaKjVv3 64EqVmF5OFI7rU/U8SiToHQjs9LRxytxI5G4NVk+UyU1N2lxTA5/KsNcEkZxWuPnEikBXZ7l+9Fp dwJznyqVh9SjfPHdbcNjxuniU7SQAwfTJ0dlma4AzjIKdIWPUZB3oR/YGjfWHaCX3po1ZRyglCNv gAuz2mUTCupN/CD45mfPUgThDs+26Hanh2OQZ4LXJYyFfZl9TCfa85VML2bNOKSdcz2iy+uwNyY+ yM3jsyDN9FdWajgJ/mMECjfvpCG7ukfayoDf13eWpQyf+3+dR72wjbwvwInZ5+lFKKvPfo9lGzOo mxhaGbmBhVg1gAvvBKnX/LuMshY48Oi4dojXNYTnE9v+p5K5BST4hPTlTyEpvx9fA5ut65CW4pjZ gRqxVAK/Ojpc8iBOHWGBni1BjdpAwLqSJsC3Uy8VguprlaLbSQm9D7gx67k0Sb9CrakKEb+a3e15 lO4= =+5X+ -----END PGP SIGNATURE-----
--------------KJ0KdqTlMoDAEcmHfrS5CjiS--
--===============5187045478452450232== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline
Cg==
--===============5187045478452450232==--
|
|
|
|