Oval Definition:
oval:org.opensuse.security:def:125976
Revision Date
:
2019-09-24
Version
:
1
Title
:
Security update for djvulibre (Moderate)
Description
:
This update for djvulibre fixes the following issues:
Security issues fixed:
- CVE-2019-15142: Fixed heap-based buffer over-read (bsc#1146702). - CVE-2019-15143: Fixed resource exhaustion caused by corrupted image files (bsc#1146569). - CVE-2019-15144: Fixed denial-of-service caused by crafted PBM image files (bsc#1146571). - CVE-2019-15145: Fixed out-of-bounds read caused by corrupted JB2 image files (bsc#1146572). - Fixed segfault when libtiff encounters corrupted TIFF (upstream issue #295).
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
1146569
1146571
1146572
1146702
CVE-2019-15142
CVE-2019-15143
CVE-2019-15144
CVE-2019-15145
SUSE-SU-2019:2444-1
Platform(s)
:
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Software Development Kit 12 SP4
Product(s)
:
Definition Synopsis
Release Information
SUSE Linux Enterprise Desktop 12 SP4 is installed
OR
SUSE Linux Enterprise Server 12 SP4 is installed
OR
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
OR
SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
AND
libdjvulibre-devel-3.5.25.3-5.3.1 is installed
BACK