Oval Definition:
oval:org.opensuse.security:def:110020
Revision Date
:
2019-09-30
Version
:
1
Title
:
Security update for djvulibre (Moderate)
Description
:
This update for djvulibre fixes the following issues:
Security issues fixed:
- CVE-2019-15142: Fixed heap-based buffer over-read (bsc#1146702). - CVE-2019-15143: Fixed resource exhaustion caused by corrupted image files (bsc#1146569). - CVE-2019-15144: Fixed denial-of-service caused by crafted PBM image files (bsc#1146571). - CVE-2019-15145: Fixed out-of-bounds read caused by corrupted JB2 image files (bsc#1146572). - Fixed segfault when libtiff encounters corrupted TIFF (upstream issue #295).
This update was imported from the SUSE:SLE-15:Update update project.
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1146569
1146571
1146572
1146702
CVE-2019-15142
CVE-2019-15143
CVE-2019-15144
CVE-2019-15145
openSUSE-SU-2019:2219-1
Platform(s)
:
openSUSE Leap 15.1
Product(s)
:
Definition Synopsis
openSUSE Leap 15.1 is installed
AND
Package Information
djvulibre-3.5.27-lp151.3.3.1 is installed
OR
djvulibre-doc-3.5.27-lp151.3.3.1 is installed
OR
libdjvulibre-devel-3.5.27-lp151.3.3.1 is installed
OR
libdjvulibre21-3.5.27-lp151.3.3.1 is installed
BACK