{"schema_version":"1.7.2","id":"OESA-2024-2000","modified":"2024-08-16T11:08:50Z","published":"2024-08-16T11:08:50Z","upstream":["CVE-2023-46048","CVE-2023-46051"],"summary":"texlive-base security update","details":"The TeX Live software distribution offers a complete TeX system for a variety of Unix, Macintosh, Windows and other platforms. It encompasses programs for editing, typesetting, previewing and printing of TeX documents in many different languages, and a large collection of TeX macros and font libraries.\r\n\r\nSecurity Fix(es):\r\n\r\nTex Live 944e257 has a NULL pointer dereference in texk/web2c/pdftexdir/writet1.c. NOTE: this is disputed because it should be categorized as a usability problem.(CVE-2023-46048)\r\n\r\nTeX Live 944e257 allows a NULL pointer dereference in texk/web2c/pdftexdir/tounicode.c. NOTE: this is disputed because it should be categorized as a usability problem.(CVE-2023-46051)","affected":[{"package":{"ecosystem":"openEuler:24.03-LTS","name":"texlive-base","purl":"pkg:rpm/openEuler/texlive-base\u0026distro=openEuler-24.03-LTS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"20210325-8.oe2403"}]}],"ecosystem_specific":{"aarch64":["texlive-afm2pl-20210325-8.oe2403.aarch64.rpm","texlive-albatross-20210325-8.oe2403.aarch64.rpm","texlive-aleph-20210325-8.oe2403.aarch64.rpm","texlive-autosp-20210325-8.oe2403.aarch64.rpm","texlive-axodraw2-20210325-8.oe2403.aarch64.rpm","texlive-base-20210325-8.oe2403.aarch64.rpm","texlive-base-debuginfo-20210325-8.oe2403.aarch64.rpm","texlive-base-debugsource-20210325-8.oe2403.aarch64.rpm","texlive-bibtex-20210325-8.oe2403.aarch64.rpm","texlive-bibtex8-20210325-8.oe2403.aarch64.rpm","texlive-bibtexu-20210325-8.oe2403.aarch64.rpm","texlive-chktex-20210325-8.oe2403.aarch64.rpm","texlive-cjkutils-20210325-8.oe2403.aarch64.rpm","texlive-context-doc-20210325-8.oe2403.aarch64.rpm","texlive-ctie-20210325-8.oe2403.aarch64.rpm","texlive-cweb-20210325-8.oe2403.aarch64.rpm","texlive-detex-20210325-8.oe2403.aarch64.rpm","texlive-dtl-20210325-8.oe2403.aarch64.rpm","texlive-dvi2tty-20210325-8.oe2403.aarch64.rpm","texlive-dvicopy-20210325-8.oe2403.aarch64.rpm","texlive-dvidvi-20210325-8.oe2403.aarch64.rpm","texlive-dviljk-20210325-8.oe2403.aarch64.rpm","texlive-dviout-util-20210325-8.oe2403.aarch64.rpm","texlive-dvipdfmx-20210325-8.oe2403.aarch64.rpm","texlive-dvipng-20210325-8.oe2403.aarch64.rpm","texlive-dvipos-20210325-8.oe2403.aarch64.rpm","texlive-dvips-20210325-8.oe2403.aarch64.rpm","texlive-dvisvgm-20210325-8.oe2403.aarch64.rpm","texlive-fontware-20210325-8.oe2403.aarch64.rpm","texlive-git-latexdiff-20210325-8.oe2403.aarch64.rpm","texlive-gregoriotex-20210325-8.oe2403.aarch64.rpm","texlive-gsftopk-20210325-8.oe2403.aarch64.rpm","texlive-hyperxmp-20210325-8.oe2403.aarch64.rpm","texlive-kpathsea-20210325-8.oe2403.aarch64.rpm","texlive-lacheck-20210325-8.oe2403.aarch64.rpm","texlive-lcdftypetools-20210325-8.oe2403.aarch64.rpm","texlive-lib-20210325-8.oe2403.aarch64.rpm","texlive-lib-devel-20210325-8.oe2403.aarch64.rpm","texlive-light-latex-make-20210325-8.oe2403.aarch64.rpm","texlive-luahbtex-20210325-8.oe2403.aarch64.rpm","texlive-luajittex-20210325-8.oe2403.aarch64.rpm","texlive-luatex-20210325-8.oe2403.aarch64.rpm","texlive-m-tx-20210325-8.oe2403.aarch64.rpm","texlive-makeindex-20210325-8.oe2403.aarch64.rpm","texlive-metafont-20210325-8.oe2403.aarch64.rpm","texlive-metapost-20210325-8.oe2403.aarch64.rpm","texlive-mflua-20210325-8.oe2403.aarch64.rpm","texlive-mfware-20210325-8.oe2403.aarch64.rpm","texlive-musixtnt-20210325-8.oe2403.aarch64.rpm","texlive-omegaware-20210325-8.oe2403.aarch64.rpm","texlive-optex-20210325-8.oe2403.aarch64.rpm","texlive-patgen-20210325-8.oe2403.aarch64.rpm","texlive-pdftex-20210325-8.oe2403.aarch64.rpm","texlive-pdftosrc-20210325-8.oe2403.aarch64.rpm","texlive-pmx-20210325-8.oe2403.aarch64.rpm","texlive-ps2eps-20210325-8.oe2403.aarch64.rpm","texlive-ps2pk-20210325-8.oe2403.aarch64.rpm","texlive-ptex-20210325-8.oe2403.aarch64.rpm","texlive-seetexk-20210325-8.oe2403.aarch64.rpm","texlive-spix-20210325-8.oe2403.aarch64.rpm","texlive-synctex-20210325-8.oe2403.aarch64.rpm","texlive-tex-20210325-8.oe2403.aarch64.rpm","texlive-tex4ht-20210325-8.oe2403.aarch64.rpm","texlive-texware-20210325-8.oe2403.aarch64.rpm","texlive-tie-20210325-8.oe2403.aarch64.rpm","texlive-tikztosvg-20210325-8.oe2403.aarch64.rpm","texlive-ttfutils-20210325-8.oe2403.aarch64.rpm","texlive-uptex-20210325-8.oe2403.aarch64.rpm","texlive-velthuis-20210325-8.oe2403.aarch64.rpm","texlive-vlna-20210325-8.oe2403.aarch64.rpm","texlive-web-20210325-8.oe2403.aarch64.rpm","texlive-xdvi-20210325-8.oe2403.aarch64.rpm","texlive-xetex-20210325-8.oe2403.aarch64.rpm","texlive-xml2pmx-20210325-8.oe2403.aarch64.rpm","texlive-xpdfopen-20210325-8.oe2403.aarch64.rpm"],"noarch":["texlive-a2ping-20210325-8.oe2403.noarch.rpm","texlive-accfonts-20210325-8.oe2403.noarch.rpm","texlive-adhocfilelist-20210325-8.oe2403.noarch.rpm","texlive-amstex-20210325-8.oe2403.noarch.rpm","texlive-arara-20210325-8.oe2403.noarch.rpm","texlive-attachfile2-20210325-8.oe2403.noarch.rpm","texlive-authorindex-20210325-8.oe2403.noarch.rpm","texlive-bib2gls-20210325-8.oe2403.noarch.rpm","texlive-bibexport-20210325-8.oe2403.noarch.rpm","texlive-bundledoc-20210325-8.oe2403.noarch.rpm","texlive-cachepic-20210325-8.oe2403.noarch.rpm","texlive-checkcites-20210325-8.oe2403.noarch.rpm","texlive-checklistings-20210325-8.oe2403.noarch.rpm","texlive-chklref-20210325-8.oe2403.noarch.rpm","texlive-clojure-pamphlet-20210325-8.oe2403.noarch.rpm","texlive-cluttex-20210325-8.oe2403.noarch.rpm","texlive-context-20210325-8.oe2403.noarch.rpm","texlive-convbkmk-20210325-8.oe2403.noarch.rpm","texlive-crossrefware-20210325-8.oe2403.noarch.rpm","texlive-cslatex-20210325-8.oe2403.noarch.rpm","texlive-csplain-20210325-8.oe2403.noarch.rpm","texlive-ctan-o-mat-20210325-8.oe2403.noarch.rpm","texlive-ctanbib-20210325-8.oe2403.noarch.rpm","texlive-ctanify-20210325-8.oe2403.noarch.rpm","texlive-ctanupload-20210325-8.oe2403.noarch.rpm","texlive-cyrillic-20210325-8.oe2403.noarch.rpm","texlive-de-macro-20210325-8.oe2403.noarch.rpm","texlive-diadia-20210325-8.oe2403.noarch.rpm","texlive-dosepsbin-20210325-8.oe2403.noarch.rpm","texlive-dtxgen-20210325-8.oe2403.noarch.rpm","texlive-dviasm-20210325-8.oe2403.noarch.rpm","texlive-dviinfox-20210325-8.oe2403.noarch.rpm","texlive-ebong-20210325-8.oe2403.noarch.rpm","texlive-eplain-20210325-8.oe2403.noarch.rpm","texlive-epspdf-20210325-8.oe2403.noarch.rpm","texlive-epstopdf-20210325-8.oe2403.noarch.rpm","texlive-exceltex-20210325-8.oe2403.noarch.rpm","texlive-fig4latex-20210325-8.oe2403.noarch.rpm","texlive-findhyph-20210325-8.oe2403.noarch.rpm","texlive-fontinst-20210325-8.oe2403.noarch.rpm","texlive-fontools-20210325-8.oe2403.noarch.rpm","texlive-fragmaster-20210325-8.oe2403.noarch.rpm","texlive-getmap-20210325-8.oe2403.noarch.rpm","texlive-glossaries-20210325-8.oe2403.noarch.rpm","texlive-glyphlist-20210325-8.oe2403.noarch.rpm","texlive-installfont-20210325-8.oe2403.noarch.rpm","texlive-jadetex-20210325-8.oe2403.noarch.rpm","texlive-jfmutil-20210325-8.oe2403.noarch.rpm","texlive-ketcindy-20210325-8.oe2403.noarch.rpm","texlive-kotex-utils-20210325-8.oe2403.noarch.rpm","texlive-l3build-20210325-8.oe2403.noarch.rpm","texlive-latex-20210325-8.oe2403.noarch.rpm","texlive-latex-git-log-20210325-8.oe2403.noarch.rpm","texlive-latex-papersize-20210325-8.oe2403.noarch.rpm","texlive-latex2man-20210325-8.oe2403.noarch.rpm","texlive-latex2nemeth-20210325-8.oe2403.noarch.rpm","texlive-latexdiff-20210325-8.oe2403.noarch.rpm","texlive-latexfileversion-20210325-8.oe2403.noarch.rpm","texlive-latexindent-20210325-8.oe2403.noarch.rpm","texlive-latexpand-20210325-8.oe2403.noarch.rpm","texlive-lilyglyphs-20210325-8.oe2403.noarch.rpm","texlive-listbib-20210325-8.oe2403.noarch.rpm","texlive-listings-ext-20210325-8.oe2403.noarch.rpm","texlive-lollipop-20210325-8.oe2403.noarch.rpm","texlive-ltxfileinfo-20210325-8.oe2403.noarch.rpm","texlive-ltximg-20210325-8.oe2403.noarch.rpm","texlive-luaotfload-20210325-8.oe2403.noarch.rpm","texlive-lwarp-20210325-8.oe2403.noarch.rpm","texlive-lyluatex-svn47584-8.oe2403.noarch.rpm","texlive-make4ht-20210325-8.oe2403.noarch.rpm","texlive-makedtx-20210325-8.oe2403.noarch.rpm","texlive-match_parens-20210325-8.oe2403.noarch.rpm","texlive-mathspic-20210325-8.oe2403.noarch.rpm","texlive-mex-20210325-8.oe2403.noarch.rpm","texlive-mf2pt1-20210325-8.oe2403.noarch.rpm","texlive-mkgrkindex-20210325-8.oe2403.noarch.rpm","texlive-mkjobtexmf-20210325-8.oe2403.noarch.rpm","texlive-mkpic-20210325-8.oe2403.noarch.rpm","texlive-mltex-20210325-8.oe2403.noarch.rpm","texlive-mptopdf-20210325-8.oe2403.noarch.rpm","texlive-multibibliography-20210325-8.oe2403.noarch.rpm","texlive-musixtex-20210325-8.oe2403.noarch.rpm","texlive-oberdiek-20210325-8.oe2403.noarch.rpm","texlive-pax-20210325-8.oe2403.noarch.rpm","texlive-pdfbook2-20210325-8.oe2403.noarch.rpm","texlive-pdfcrop-20210325-8.oe2403.noarch.rpm","texlive-pdfjam-20210325-8.oe2403.noarch.rpm","texlive-pdflatexpicscale-20210325-8.oe2403.noarch.rpm","texlive-pdftex-quiet-20210325-8.oe2403.noarch.rpm","texlive-pdfxup-20210325-8.oe2403.noarch.rpm","texlive-pedigree-perl-20210325-8.oe2403.noarch.rpm","texlive-perltex-20210325-8.oe2403.noarch.rpm","texlive-petri-nets-20210325-8.oe2403.noarch.rpm","texlive-pfarrei-20210325-8.oe2403.noarch.rpm","texlive-pkfix-20210325-8.oe2403.noarch.rpm","texlive-pkfix-helper-20210325-8.oe2403.noarch.rpm","texlive-pmxchords-20210325-8.oe2403.noarch.rpm","texlive-pst-pdf-20210325-8.oe2403.noarch.rpm","texlive-pst2pdf-20210325-8.oe2403.noarch.rpm","texlive-ptex-fontmaps-20210325-8.oe2403.noarch.rpm","texlive-ptex2pdf-20210325-8.oe2403.noarch.rpm","texlive-purifyeps-20210325-8.oe2403.noarch.rpm","texlive-pygmentex-20210325-8.oe2403.noarch.rpm","texlive-pythontex-20210325-8.oe2403.noarch.rpm","texlive-rubik-20210325-8.oe2403.noarch.rpm","texlive-splitindex-20210325-8.oe2403.noarch.rpm","texlive-srcredact-20210325-8.oe2403.noarch.rpm","texlive-sty2dtx-20210325-8.oe2403.noarch.rpm","texlive-svn-multi-20210325-8.oe2403.noarch.rpm","texlive-tex4ebook-20210325-8.oe2403.noarch.rpm","texlive-texcount-20210325-8.oe2403.noarch.rpm","texlive-texdef-20210325-8.oe2403.noarch.rpm","texlive-texdiff-20210325-8.oe2403.noarch.rpm","texlive-texdirflatten-20210325-8.oe2403.noarch.rpm","texlive-texdoc-20210325-8.oe2403.noarch.rpm","texlive-texdoctk-20210325-8.oe2403.noarch.rpm","texlive-texfot-20210325-8.oe2403.noarch.rpm","texlive-texlive-en-20210325-8.oe2403.noarch.rpm","texlive-texlive-scripts-20210325-8.oe2403.noarch.rpm","texlive-texlive-scripts-extra-20210325-8.oe2403.noarch.rpm","texlive-texlive.infra-20210325-8.oe2403.noarch.rpm","texlive-texliveonfly-20210325-8.oe2403.noarch.rpm","texlive-texloganalyser-20210325-8.oe2403.noarch.rpm","texlive-texosquery-20210325-8.oe2403.noarch.rpm","texlive-texplate-20210325-8.oe2403.noarch.rpm","texlive-texsis-20210325-8.oe2403.noarch.rpm","texlive-thumbpdf-20210325-8.oe2403.noarch.rpm","texlive-tpic2pdftex-20210325-8.oe2403.noarch.rpm","texlive-typeoutfileinfo-20210325-8.oe2403.noarch.rpm","texlive-ulqda-20210325-8.oe2403.noarch.rpm","texlive-urlbst-20210325-8.oe2403.noarch.rpm","texlive-vpe-20210325-8.oe2403.noarch.rpm","texlive-webquiz-20210325-8.oe2403.noarch.rpm","texlive-wordcount-20210325-8.oe2403.noarch.rpm","texlive-xindex-20210325-8.oe2403.noarch.rpm","texlive-xmltex-20210325-8.oe2403.noarch.rpm","texlive-yplan-20210325-8.oe2403.noarch.rpm"],"src":["texlive-base-20210325-8.oe2403.src.rpm"],"x86_64":["texlive-afm2pl-20210325-8.oe2403.x86_64.rpm","texlive-albatross-20210325-8.oe2403.x86_64.rpm","texlive-aleph-20210325-8.oe2403.x86_64.rpm","texlive-autosp-20210325-8.oe2403.x86_64.rpm","texlive-axodraw2-20210325-8.oe2403.x86_64.rpm","texlive-base-20210325-8.oe2403.x86_64.rpm","texlive-base-debuginfo-20210325-8.oe2403.x86_64.rpm","texlive-base-debugsource-20210325-8.oe2403.x86_64.rpm","texlive-bibtex-20210325-8.oe2403.x86_64.rpm","texlive-bibtex8-20210325-8.oe2403.x86_64.rpm","texlive-bibtexu-20210325-8.oe2403.x86_64.rpm","texlive-chktex-20210325-8.oe2403.x86_64.rpm","texlive-cjkutils-20210325-8.oe2403.x86_64.rpm","texlive-context-doc-20210325-8.oe2403.x86_64.rpm","texlive-ctie-20210325-8.oe2403.x86_64.rpm","texlive-cweb-20210325-8.oe2403.x86_64.rpm","texlive-detex-20210325-8.oe2403.x86_64.rpm","texlive-dtl-20210325-8.oe2403.x86_64.rpm","texlive-dvi2tty-20210325-8.oe2403.x86_64.rpm","texlive-dvicopy-20210325-8.oe2403.x86_64.rpm","texlive-dvidvi-20210325-8.oe2403.x86_64.rpm","texlive-dviljk-20210325-8.oe2403.x86_64.rpm","texlive-dviout-util-20210325-8.oe2403.x86_64.rpm","texlive-dvipdfmx-20210325-8.oe2403.x86_64.rpm","texlive-dvipng-20210325-8.oe2403.x86_64.rpm","texlive-dvipos-20210325-8.oe2403.x86_64.rpm","texlive-dvips-20210325-8.oe2403.x86_64.rpm","texlive-dvisvgm-20210325-8.oe2403.x86_64.rpm","texlive-fontware-20210325-8.oe2403.x86_64.rpm","texlive-git-latexdiff-20210325-8.oe2403.x86_64.rpm","texlive-gregoriotex-20210325-8.oe2403.x86_64.rpm","texlive-gsftopk-20210325-8.oe2403.x86_64.rpm","texlive-hyperxmp-20210325-8.oe2403.x86_64.rpm","texlive-kpathsea-20210325-8.oe2403.x86_64.rpm","texlive-lacheck-20210325-8.oe2403.x86_64.rpm","texlive-lcdftypetools-20210325-8.oe2403.x86_64.rpm","texlive-lib-20210325-8.oe2403.x86_64.rpm","texlive-lib-devel-20210325-8.oe2403.x86_64.rpm","texlive-light-latex-make-20210325-8.oe2403.x86_64.rpm","texlive-luahbtex-20210325-8.oe2403.x86_64.rpm","texlive-luajittex-20210325-8.oe2403.x86_64.rpm","texlive-luatex-20210325-8.oe2403.x86_64.rpm","texlive-m-tx-20210325-8.oe2403.x86_64.rpm","texlive-makeindex-20210325-8.oe2403.x86_64.rpm","texlive-metafont-20210325-8.oe2403.x86_64.rpm","texlive-metapost-20210325-8.oe2403.x86_64.rpm","texlive-mflua-20210325-8.oe2403.x86_64.rpm","texlive-mfware-20210325-8.oe2403.x86_64.rpm","texlive-musixtnt-20210325-8.oe2403.x86_64.rpm","texlive-omegaware-20210325-8.oe2403.x86_64.rpm","texlive-optex-20210325-8.oe2403.x86_64.rpm","texlive-patgen-20210325-8.oe2403.x86_64.rpm","texlive-pdftex-20210325-8.oe2403.x86_64.rpm","texlive-pdftosrc-20210325-8.oe2403.x86_64.rpm","texlive-pmx-20210325-8.oe2403.x86_64.rpm","texlive-ps2eps-20210325-8.oe2403.x86_64.rpm","texlive-ps2pk-20210325-8.oe2403.x86_64.rpm","texlive-ptex-20210325-8.oe2403.x86_64.rpm","texlive-seetexk-20210325-8.oe2403.x86_64.rpm","texlive-spix-20210325-8.oe2403.x86_64.rpm","texlive-synctex-20210325-8.oe2403.x86_64.rpm","texlive-tex-20210325-8.oe2403.x86_64.rpm","texlive-tex4ht-20210325-8.oe2403.x86_64.rpm","texlive-texware-20210325-8.oe2403.x86_64.rpm","texlive-tie-20210325-8.oe2403.x86_64.rpm","texlive-tikztosvg-20210325-8.oe2403.x86_64.rpm","texlive-ttfutils-20210325-8.oe2403.x86_64.rpm","texlive-uptex-20210325-8.oe2403.x86_64.rpm","texlive-velthuis-20210325-8.oe2403.x86_64.rpm","texlive-vlna-20210325-8.oe2403.x86_64.rpm","texlive-web-20210325-8.oe2403.x86_64.rpm","texlive-xdvi-20210325-8.oe2403.x86_64.rpm","texlive-xetex-20210325-8.oe2403.x86_64.rpm","texlive-xml2pmx-20210325-8.oe2403.x86_64.rpm","texlive-xpdfopen-20210325-8.oe2403.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2024-2000"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-46048"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-46051"}],"database_specific":{"severity":"Low"}}