Revision Date: | 2022-06-30 | Version: | 1 |
Title: | CVE-2017-7875 |
Description: |
In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | CVE-2017-7875 Mitre CVE-2017-7875 SUSE CVE-2017-7875 openSUSE-SU-2017:1139-1
|
Platform(s): | openSUSE Leap 42.1 openSUSE Leap 42.2 openSUSE Tumbleweed
| Product(s): | |
Definition Synopsis |
openSUSE Leap 42.2 is installed AND Package Information
feh-2.18.3-6.3.1 is installed
AND feh is signed with openSUSE key
|
Definition Synopsis |
openSUSE Leap 42.1 is installed
AND Package Information
feh-2.13.1-6.1 is installed
AND feh is signed with openSUSE key
|
Definition Synopsis |
openSUSE Tumbleweed is installed
AND feh-3.7-1.3 is installed
|