Oval Definition:oval:org.opensuse.security:def:110020
Revision Date:2019-09-30Version:1
Title:Security update for djvulibre (Moderate)
Description:

This update for djvulibre fixes the following issues:

Security issues fixed:

- CVE-2019-15142: Fixed heap-based buffer over-read (bsc#1146702). - CVE-2019-15143: Fixed resource exhaustion caused by corrupted image files (bsc#1146569). - CVE-2019-15144: Fixed denial-of-service caused by crafted PBM image files (bsc#1146571). - CVE-2019-15145: Fixed out-of-bounds read caused by corrupted JB2 image files (bsc#1146572). - Fixed segfault when libtiff encounters corrupted TIFF (upstream issue #295).

This update was imported from the SUSE:SLE-15:Update update project.
Family:unixClass:patch
Status:Reference(s):1146569
1146571
1146572
1146702
CVE-2019-15142
CVE-2019-15143
CVE-2019-15144
CVE-2019-15145
openSUSE-SU-2019:2219-1
Platform(s):openSUSE Leap 15.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • djvulibre-3.5.27-lp151.3.3.1 is installed
  • OR djvulibre-doc-3.5.27-lp151.3.3.1 is installed
  • OR libdjvulibre-devel-3.5.27-lp151.3.3.1 is installed
  • OR libdjvulibre21-3.5.27-lp151.3.3.1 is installed
  • BACK