Oval Definition:oval:org.opensuse.security:def:436
Revision Date:2022-09-17Version:1
Title:Security update for mupdf (Moderate)
Description:

This update for mupdf fixes the following issues:

mupdf was updated to 1.20.3:

return error, not success when unable to lock native device resource. * Bug 705620: Start journal operation instead of pushing local xref. * Ensure AndroidDrawDevice is destroyed, even upon exception. * source/pdf/pdf-clean.c: fix segv from incorrect call to fz_drop_pixmap(). * Bug 705681: Enclose code in begin/end operation. * Guard against SEGVs when calling archive functions with NULL archive.

mupdf was updated to 1.20.0 (boo#1202858, CVE-2021-4216):

Experimental C# bindings * Cross compilation should no longer need a host compiler * Major additions to JNI bindings * New API to edit outline * New API to resolve and create links * New API to toggle individual layers in PDF * Layer panel in mupdf-gl * Layer option in mutool draw * New API to add a Javascript console * Console panel in mupdf-gl * Text search API extended to be able to distinguish between separate search hits * Command line tool improvements: * all: Negative page numbers to index from the last page * mutool draw: Add option to render document without text * mutool draw and convert: Support DPI option in text and HTML output * New hybrid HTML output format using 'scripts/pdftohtml' script: * Graphics in a background image * Text on top * Improved WASM viewer demo * Support high DPI screens * Progressive loading * Update to zlib 1.2.12 for security fix

mupdf was updated to 1.19.1:

Updated zlib to 1.2.12 due to CVE-2018-25032
Family:unixClass:patch
Status:Reference(s):1202858
CVE-2008-3522
CVE-2008-3522
CVE-2011-4516
CVE-2011-4516
CVE-2011-4517
CVE-2011-4517
CVE-2014-8137
CVE-2014-8137
CVE-2014-8138
CVE-2014-8138
CVE-2014-8157
CVE-2014-8157
CVE-2014-8158
CVE-2014-8158
CVE-2014-9029
CVE-2014-9029
CVE-2015-5203
CVE-2015-5203
CVE-2015-5221
CVE-2015-5221
CVE-2016-10251
CVE-2016-10251
CVE-2016-1577
CVE-2016-1577
CVE-2016-1867
CVE-2016-1867
CVE-2016-2089
CVE-2016-2089
CVE-2016-2116
CVE-2016-2116
CVE-2016-8654
CVE-2016-8654
CVE-2016-8690
CVE-2016-8690
CVE-2016-8691
CVE-2016-8691
CVE-2016-8692
CVE-2016-8692
CVE-2016-8693
CVE-2016-8693
CVE-2016-8880
CVE-2016-8880
CVE-2016-8881
CVE-2016-8881
CVE-2016-8882
CVE-2016-8882
CVE-2016-8883
CVE-2016-8883
CVE-2016-8884
CVE-2016-8884
CVE-2016-8885
CVE-2016-8885
CVE-2016-8886
CVE-2016-8886
CVE-2016-8887
CVE-2016-8887
CVE-2016-9262
CVE-2016-9262
CVE-2016-9387
CVE-2016-9387
CVE-2016-9388
CVE-2016-9388
CVE-2016-9389
CVE-2016-9389
CVE-2016-9390
CVE-2016-9390
CVE-2016-9391
CVE-2016-9391
CVE-2016-9392
CVE-2016-9392
CVE-2016-9393
CVE-2016-9393
CVE-2016-9394
CVE-2016-9394
CVE-2016-9395
CVE-2016-9395
CVE-2016-9396
CVE-2016-9396
CVE-2016-9398
CVE-2016-9398
CVE-2016-9557
CVE-2016-9557
CVE-2016-9560
CVE-2016-9560
CVE-2016-9583
CVE-2016-9583
CVE-2016-9591
CVE-2016-9591
CVE-2016-9600
CVE-2016-9600
CVE-2017-1000050
CVE-2017-1000050
CVE-2017-5498
CVE-2017-5498
CVE-2017-6850
CVE-2017-6850
CVE-2018-19539
CVE-2018-19539
CVE-2018-19542
CVE-2018-19542
CVE-2018-25032
CVE-2018-9055
CVE-2018-9055
CVE-2021-4216
openSUSE-SU-2022:10126-1
Platform(s):openSUSE 12.3 Update
openSUSE 13.1
openSUSE Leap 15.4
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise High Availability 12
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for CAP 15 SP1
SUSE Linux Enterprise Module for Containers 15
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • openSUSE Leap 15.4 is installed
  • AND Package Information
  • mupdf-1.20.3-bp154.2.3.1 is installed
  • OR mupdf-devel-static-1.20.3-bp154.2.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND openvpn-2.3.8-16.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND libjasper4-2.0.14-3.3.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND libjasper4-2.0.14-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for CAP 15 SP1 is installed
  • AND cf-cli-6.43.0-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Containers 15 is installed
  • AND Package Information
  • containerd-1.1.2-5.6 is installed
  • OR docker-18.09.0_ce-6.11 is installed
  • OR docker-bash-completion-18.09.0_ce-6.11 is installed
  • OR docker-libnetwork-0.7.0.1+gitr2704_6da50d197830-4.6 is installed
  • OR docker-runc-1.0.0rc5+gitr3562_69663f0bd4b6-6.6 is installed
  • OR golang-github-docker-libnetwork-0.7.0.1+gitr2704_6da50d197830-4.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND perl-Net-Libproxy-0.4.15-2 is installed
  • BACK