USN-4852-1: VTK vulnerabilities
15 March 2021
Several security issues were fixed in VTK.
Releases
Packages
- vtk - Visualization Toolkit - A high level 3D visualization library - j
Details
It was discovered that VTK incorrectly handled certain XML files in the
embedded Expat library. An attacker could possibly use this issue to cause
a denial of service or expose sensitive information.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 16.04
-
libvtk5.10
-
5.10.1+dfsg-2.1ubuntu0.1~esm1
Available with Ubuntu Pro
Ubuntu 14.04
-
libvtk5.8
-
5.8.0-14.1ubuntu3+esm1
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.