RHSA-2024:9827: Moderate: libvpx security update
Moderate: libvpx security update
Other sources
The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.Security Fix(es): libvpx: Integer overflow in vpximgalloc() (CVE-2024-5197) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:9827?
The severity of RHSA-2024:9827 is classified as moderate.
How do I fix RHSA-2024:9827?
To fix RHSA-2024:9827, update the libvpx package to version 1.9.0-8.el9_5.
Which systems are affected by RHSA-2024:9827?
RHSA-2024:9827 affects Red Hat Enterprise Linux and CodeReady Linux Builder for x86_64, IBM z Systems, ARM 64, and Power, little endian.
What security issue does RHSA-2024:9827 address?
RHSA-2024:9827 addresses an integer overflow vulnerability in the vpx_img_alloc() function in the libvpx package.
Is there an alternative to upgrading for RHSA-2024:9827?
While upgrading is the primary recommendation for RHSA-2024:9827, no alternatives to address the vulnerability without updating are recommended.