Revision Date: | 2022-05-22 | Version: | 1 |
Title: | CVE-2017-18229 |
Description: |
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | CVE-2017-18229 SUSE-SU-2018:1163-1 openSUSE-SU-2018:1123-1 Mitre CVE-2017-18229 SUSE CVE-2017-18229 SUSE-SU-2018:1163-1 openSUSE-SU-2018:1123-1
|
Platform(s): | openSUSE Leap 42.3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Server 11 SP4 SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server for SAP Applications 11 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SP3 SUSE Linux Enterprise Software Development Kit 11 SP4 SUSE Linux Enterprise Software Development Kit 12 SP2 SUSE Linux Enterprise Software Development Kit 12 SP3 SUSE Linux Enterprise Workstation Extension 12 SP2 SUSE Linux Enterprise Workstation Extension 12 SP3
| Product(s): | |
Definition Synopsis |
openSUSE Leap 42.3 is installed AND Package Information
GraphicsMagick-1.3.25-87 is installed
AND GraphicsMagick is signed with openSUSE key
OR
GraphicsMagick-devel-1.3.25-87 is installed
AND GraphicsMagick-devel is signed with openSUSE key
OR
libGraphicsMagick++-Q16-12-1.3.25-87 is installed
AND libGraphicsMagick++-Q16-12 is signed with openSUSE key
OR
libGraphicsMagick++-devel-1.3.25-87 is installed
AND libGraphicsMagick++-devel is signed with openSUSE key
OR
libGraphicsMagick-Q16-3-1.3.25-87 is installed
AND libGraphicsMagick-Q16-3 is signed with openSUSE key
OR
libGraphicsMagick3-config-1.3.25-87 is installed
AND libGraphicsMagick3-config is signed with openSUSE key
OR
libGraphicsMagickWand-Q16-2-1.3.25-87 is installed
AND libGraphicsMagickWand-Q16-2 is signed with openSUSE key
OR
perl-GraphicsMagick-1.3.25-87 is installed
AND perl-GraphicsMagick is signed with openSUSE key
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND Package Information
GraphicsMagick-1.2.5-78.52 is installed
OR libGraphicsMagick2-1.2.5-78.52 is installed
OR perl-GraphicsMagick-1.2.5-78.52 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND ImageMagick is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND ImageMagick is not affected
OR Package Information
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND ImageMagick is affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 11 SP4 is installed
AND ImageMagick is not affected
OR Package Information
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND
GraphicsMagick-1.2.5-78.52.1 is installed
OR libGraphicsMagick2-1.2.5-78.52.1 is installed
OR perl-GraphicsMagick-1.2.5-78.52.1 is installed
OR ImageMagick is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 12 SP3 is installed
OR SUSE Linux Enterprise Server 12 SP2 is installed
OR SUSE Linux Enterprise Server 12 SP3 is installed
OR SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
OR SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
OR SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
OR SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND ImageMagick is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 12 SP2 is installed
OR SUSE Linux Enterprise Desktop 12 SP3 is installed
OR SUSE Linux Enterprise Server 12 SP2 is installed
OR SUSE Linux Enterprise Server 12 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
OR SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
OR SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
AND ImageMagick is not affected
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND ImageMagick is not affected
|