openSUSE-SU-2023:0253-1
Dashboard / Vulnerabilities / openSUSE-SU-2023:0253-1
openSUSE-SU-2023:0253-1
Summary: Security update for renderdoc
Details: This update for renderdoc fixes the following issues: Security issues fixed: * CVE-2023-33863: integer overflow to heap-based buffer overflow * CVE-2023-33864: integer underflow to heap-based buffer overflow * CVE-2023-33865: symlink vulnerability in /tmp/RenderDoc
References: https://lists.opensuse.org/archives/list/[email protected]/thread/OUXFQKIACDXNDNRMXVBF6QD6SJQYGXBM/, https://bugzilla.suse.com/1212086, https://bugzilla.suse.com/1212088, https://bugzilla.suse.com/1212089, https://www.suse.com/security/cve/CVE-2023-33863, https://www.suse.com/security/cve/CVE-2023-33864, https://www.suse.com/security/cve/CVE-2023-33865
Affected packages
Package
Name: renderdoc
Purl: pkg:rpm/suse/renderdoc&distro=SUSE%20Package%20Hub%2015%20SP5
Affected ranges
Type: ECOSYSTEM
Events:
