File _patchinfo of Package patchinfo.29065
<patchinfo incident="29065">
<issue tracker="cve" id="2023-24805"/>
<issue tracker="cve" id="2023-32700"/>
<issue tracker="bnc" id="1211389">VUL-0: CVE-2023-32700: texlive: Arbitrary code execution in LuaTeX</issue>
<issue tracker="bnc" id="1211450">Latest poppler 0.62.0 is missing GooCheckedOps.h in libpoppler-devel-0.62.0</issue>
<issue tracker="bnc" id="1211340">VUL-0: cups-filters: CVE-2023-24805: RCE in cups-filters, beh CUPS backend</issue>
<packager>jsmeix</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for cups-filters, poppler, texlive</summary>
<description>This update for cups-filters, poppler, texlive fixes the following issues:
cups-filters:
- CVE-2023-24805: Fixed a remote code execution in the beh backend (bsc#1211340).
texlive:
- CVE-2023-32700: Fixed arbitrary code execution in LuaTeX (bsc#1211389).
poppler:
- Added missing header file goo/GooCheckedOps.h. Without it, other packages
using poppler as a library might fail to compile since our public headers now
depend on it. (bsc#1211450)
</description>
</patchinfo>