USN-7118-1: ZBar vulnerabilities
It was discovered that ZBar did not properly handle certain QR codes. If a user or automated system using ZBar were tricked into opening a specially crafted file, an attacker could possibly use this to obtain sensitive information. (CVE-2023-40889) It was discovered that ZBar did not properly handle certain QR codes. If a user or automated system using ZBar were tricked into opening a specially crafted file, an attacker could possibly use this to obtain sensitive information. This issue only affected Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS. (CVE-2023-40890)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7118-1?
The severity of USN-7118-1 is considered important due to potential sensitive information exposure.
How do I fix USN-7118-1?
To fix USN-7118-1, upgrade to the recommended versions of the libzbar0 package for your Ubuntu version.
Which Ubuntu versions are affected by USN-7118-1?
USN-7118-1 affects Ubuntu 16.04, 18.04, 20.04, and 22.04.
What does CVE-2023-40889 describe in USN-7118-1?
CVE-2023-40889 describes a vulnerability in ZBar that improperly handles certain QR codes, risking sensitive information exposure.
Is automated systems vulnerable to USN-7118-1?
Yes, automated systems using ZBar are vulnerable to USN-7118-1 if they are tricked into opening specially crafted QR codes.