ALAS-2024-675


Amazon Linux 2023 Security Advisory: ALAS-2024-675
Advisory Release Date: 2024-08-01 04:06 Pacific
Advisory Updated Date: 2024-08-06 15:00 Pacific
Severity: Important

Issue Overview:

gtk3: gtk2: Library injection from CWD (CVE-2024-6655)


Affected Packages:

gtk3


Issue Correction:
Run dnf update gtk3 --releasever 2023.5.20240805 to update your system.

New Packages:
aarch64:
    gtk3-immodules-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-devel-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk-update-icon-cache-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-immodule-xim-3.24.43-1.amzn2023.0.1.aarch64
    gtk-update-icon-cache-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-tests-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-immodules-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-immodule-xim-debuginfo-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-devel-docs-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-debugsource-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-devel-3.24.43-1.amzn2023.0.1.aarch64
    gtk3-tests-3.24.43-1.amzn2023.0.1.aarch64

src:
    gtk3-3.24.43-1.amzn2023.0.1.src

x86_64:
    gtk-update-icon-cache-3.24.43-1.amzn2023.0.1.x86_64
    gtk-update-icon-cache-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-immodule-xim-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-immodules-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-devel-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-immodule-xim-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-immodules-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-tests-debuginfo-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-devel-docs-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-devel-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-debugsource-3.24.43-1.amzn2023.0.1.x86_64
    gtk3-tests-3.24.43-1.amzn2023.0.1.x86_64