Oval Definition:oval:org.opensuse.security:def:109880
Revision Date:2019-06-24Version:1
Title:Security update for netpbm (Moderate)
Description:

This update for netpbm fixes the following issues:

Security issues fixed:

- CVE-2017-2579: Fixed out-of-bounds read in expandCodeOntoStack() (bsc#1024288). - CVE-2017-2580: Fixed out-of-bounds write of heap data in addPixelToRaster() function (bsc#1024291). - create netpbm-vulnerable subpackage and move pstopnm there, as ghostscript is used to convert (bsc#1136936)



This update was imported from the SUSE:SLE-15:Update update project.
Family:unixClass:patch
Status:Reference(s):1024288
1024291
1136936
CVE-2017-2579
CVE-2017-2580
openSUSE-SU-2019:1605-1
Platform(s):openSUSE Leap 15.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libnetpbm-devel-10.80.1-lp151.4.3.1 is installed
  • OR libnetpbm11-10.80.1-lp151.4.3.1 is installed
  • OR libnetpbm11-32bit-10.80.1-lp151.4.3.1 is installed
  • OR netpbm-10.80.1-lp151.4.3.1 is installed
  • OR netpbm-vulnerable-10.80.1-lp151.4.3.1 is installed
  • BACK