========================================================================== Ubuntu Security Notice USN-7367-1 March 24, 2025 zvbi vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: zvbi could be made to crash or run programs if it received specially crafted input. Software Description: - zvbi: Vertical Blanking Interval (VBI) utilities Details: It was discovered that zvbi incorrectly handled memory when processing user input. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10   libzvbi0t64                     0.2.42-2ubuntu0.24.10.2   zvbi                            0.2.42-2ubuntu0.24.10.2 Ubuntu 24.04 LTS   libzvbi0t64                     0.2.42-2ubuntu0.24.04.1~esm1                                   Available with Ubuntu Pro   zvbi                            0.2.42-2ubuntu0.24.04.1~esm1                                   Available with Ubuntu Pro Ubuntu 22.04 LTS   libzvbi0                        0.2.35-19ubuntu0.1~esm1                                   Available with Ubuntu Pro   zvbi                            0.2.35-19ubuntu0.1~esm1                                   Available with Ubuntu Pro Ubuntu 20.04 LTS   libzvbi0                        0.2.35-17ubuntu0.1~esm1                                   Available with Ubuntu Pro   zvbi                            0.2.35-17ubuntu0.1~esm1                                   Available with Ubuntu Pro Ubuntu 18.04 LTS   libzvbi0                        0.2.35-13ubuntu0.1~esm1                                   Available with Ubuntu Pro   zvbi                            0.2.35-13ubuntu0.1~esm1                                   Available with Ubuntu Pro Ubuntu 16.04 LTS   libzvbi0                        0.2.35-10ubuntu0.1~esm1                                   Available with Ubuntu Pro   zvbi                            0.2.35-10ubuntu0.1~esm1                                   Available with Ubuntu Pro In general, a standard system update will make all the necessary changes. References:   https://ubuntu.com/security/notices/USN-7367-1   CVE-2025-2173, CVE-2025-2174, CVE-2025-2175, CVE-2025-2176,   CVE-2025-2177 Package Information: https://launchpad.net/ubuntu/+source/zvbi/0.2.42-2ubuntu0.24.10.2