Oval Definition:oval:org.opensuse.security:def:5032
Revision Date:2021-01-04Version:1
Title:Security update for gimp (Moderate)
Description:

This update for gimp fixes the following issues:

- CVE-2017-17784: Fixed an insufficient string validation for input names (bsc#1073624). - CVE-2017-17785: Fixed an heap-based buffer overflow in FLI import (bsc#1073625). - CVE-2017-17786: Fixed an out-of-bounds read in TGA (bsc#1073626).
Family:unixClass:patch
Status:Reference(s):1051510
1051979
1054914
1055117
1055186
1061210
1061840
1065600
1065729
1066110
1071995
1073624
1073625
1073626
1077761
1082555
1086274
1086314
1087081
1089343
1094244
1099811
1099813
1099844
1099845
1099846
1099849
1099858
1099863
1099864
1100132
1101116
1101331
1101669
1101828
1101832
1101833
1101837
1101839
1101841
1101843
1101844
1101845
1101847
1101852
1101853
1101867
1101872
1101874
1101875
1101882
1101883
1101885
1101887
1101890
1101891
1101893
1101895
1101896
1101900
1101902
1101903
1102633
1102658
1103097
1103356
1103421
1103517
1103723
1103724
1103725
1103726
1103727
1103728
1103729
1103730
1103917
1103920
1103948
1103949
1104066
1104111
1104174
1104211
1104319
1104967
1105173
1109158
1112178
1113722
1113956
1114279
1119086
1123034
1127988
1131304
1137069
1137865
1137959
1140155
1141013
1142076
1142635
1144522
1146042
1146519
1146540
1146664
1148133
1148712
1148868
1149313
1149446
1149555
1149651
1150381
1150423
1151350
1151610
1151667
1151680
1151891
1151955
1152024
1152025
1152026
1152161
1152325
1152457
1152460
1152466
1152684
1152972
1152974
1152975
1154366
1167527
1168468
1169972
1171675
1171688
1171742
1173115
1173576
1174633
1174635
1174638
1174899
1175228
1175749
1175882
1176011
1176022
1176038
1176235
1176242
1176278
1176316
1176317
1176318
1176319
1176320
1176321
1176381
1176395
1176410
1176423
1176482
1176507
1176536
1176544
1176545
1176546
1176548
1176659
1176698
1176699
1176700
1176721
1176722
1176725
1176732
1176788
1176789
1176869
1176877
1176935
1176950
1176962
1176966
1176990
1177027
1177030
1177041
1177042
1177043
1177044
1177121
1177206
1177258
1177291
1177293
1177294
1177295
1177296
CVE-2006-7250
CVE-2009-0035
CVE-2009-0590
CVE-2009-0591
CVE-2009-0789
CVE-2009-1377
CVE-2009-1378
CVE-2009-1379
CVE-2009-1386
CVE-2009-1387
CVE-2009-3245
CVE-2009-3555
CVE-2009-4355
CVE-2010-0740
CVE-2010-2935
CVE-2010-2936
CVE-2010-2939
CVE-2010-3864
CVE-2010-4180
CVE-2010-4252
CVE-2011-0014
CVE-2011-0461
CVE-2011-3210
CVE-2011-4108
CVE-2011-4109
CVE-2011-4354
CVE-2011-4576
CVE-2011-4577
CVE-2011-4619
CVE-2011-5095
CVE-2012-0050
CVE-2012-0884
CVE-2012-1165
CVE-2012-2110
CVE-2012-2131
CVE-2012-2333
CVE-2012-4453
CVE-2012-4510
CVE-2012-4929
CVE-2013-0166
CVE-2013-0169
CVE-2013-4238
CVE-2013-4242
CVE-2014-0076
CVE-2014-0221
CVE-2014-0224
CVE-2014-0247
CVE-2014-3470
CVE-2014-3505
CVE-2014-3506
CVE-2014-3507
CVE-2014-3508
CVE-2014-3510
CVE-2014-3524
CVE-2014-3575
CVE-2015-3294
CVE-2017-17784
CVE-2017-17785
CVE-2017-17786
CVE-2017-18595
CVE-2018-10876
CVE-2018-10877
CVE-2018-10878
CVE-2018-10879
CVE-2018-10880
CVE-2018-10881
CVE-2018-10882
CVE-2018-10883
CVE-2018-3620
CVE-2018-3646
CVE-2018-5391
CVE-2019-14821
CVE-2019-15291
CVE-2019-9506
CVE-2019-9853
CVE-2020-0404
CVE-2020-0427
CVE-2020-0431
CVE-2020-0432
CVE-2020-12417
CVE-2020-12418
CVE-2020-12419
CVE-2020-12420
CVE-2020-12421
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2020-14381
CVE-2020-14390
CVE-2020-25212
CVE-2020-25284
CVE-2020-25641
CVE-2020-25643
CVE-2020-26088
SUSE-SU-2018:2380-1
SUSE-SU-2019:2706-1
SUSE-SU-2020:1900-1
SUSE-SU-2020:2240-1
SUSE-SU-2020:2905-1
SUSE-SU-2021:0015-1
Platform(s):SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise High Availability 12
SUSE Linux Enterprise High Availability 12 SP1
SUSE Linux Enterprise High Availability 12 SP2
SUSE Linux Enterprise High Availability 12 SP3
SUSE Linux Enterprise High Availability 12 SP5
SUSE Linux Enterprise High Availability 15
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Advanced Systems Management 12
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Point of Sale 12 SP2
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3-LTSS
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 12-LTSS
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for Rasperry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Linux Enterprise Server for VMWare 11 SP3
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP5
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP2
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • icu-4.0-7.26.15 is installed
  • OR libicu-4.0-7.26.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND libksba-1.0.4-1.20.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • alsa-1.0.27.2-11 is installed
  • OR libasound2-1.0.27.2-11 is installed
  • OR libasound2-32bit-1.0.27.2-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-9 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • alsa-1.0.27.2-11 is installed
  • OR libasound2-1.0.27.2-11 is installed
  • OR libasound2-32bit-1.0.27.2-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND argyllcms-1.6.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gnome-shell-3.20.4-77.17 is installed
  • OR gnome-shell-browser-plugin-3.20.4-77.17 is installed
  • OR gnome-shell-calendar-3.20.4-77.17 is installed
  • OR gnome-shell-lang-3.20.4-77.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 is installed
  • AND haproxy-1.5.4-2.4.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP1 is installed
  • AND Package Information
  • libpcreposix0-8.39-5.1 is installed
  • OR pcre-8.39-5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP2 is installed
  • AND ruby2.1-rubygem-bundler-1.7.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP3 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.4.103-6.33.1 is installed
  • OR dlm-kmp-default-4.4.103-6.33.1 is installed
  • OR gfs2-kmp-default-4.4.103-6.33.1 is installed
  • OR kernel-default-4.4.103-6.33.1 is installed
  • OR ocfs2-kmp-default-4.4.103-6.33.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP5 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.12.14-120 is installed
  • OR dlm-kmp-default-4.12.14-120 is installed
  • OR gfs2-kmp-default-4.12.14-120 is installed
  • OR ocfs2-kmp-default-4.12.14-120 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 is installed
  • AND Package Information
  • cluster-md-kmp-default-4.12.14-25.13 is installed
  • OR dlm-kmp-default-4.12.14-25.13 is installed
  • OR gfs2-kmp-default-4.12.14-25.13 is installed
  • OR kernel-default-4.12.14-25.13 is installed
  • OR ocfs2-kmp-default-4.12.14-25.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND Package Information
  • accountsservice-0.6.42-16.3 is installed
  • OR accountsservice-lang-0.6.42-16.3 is installed
  • OR libaccountsservice0-0.6.42-16.3 is installed
  • OR typelib-1_0-AccountsService-1_0-0.6.42-16.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_38-44-default-1-2.2 is installed
  • OR kgraft-patch-3_12_38-44-xen-1-2.2 is installed
  • OR kgraft-patch-SLE12_Update_3-1-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Advanced Systems Management 12 is installed
  • AND facter-2.0.2-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Containers 12 is installed
  • AND docker-1.6.2-31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 12 is installed
  • AND Package Information
  • compat-openssl098-0.9.8j-78.1 is installed
  • OR libopenssl0_9_8-0.9.8j-78.1 is installed
  • OR libopenssl0_9_8-32bit-0.9.8j-78.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 12 is installed
  • AND Package Information
  • kernel-ec2-3.12.38-44.1 is installed
  • OR kernel-ec2-devel-3.12.38-44.1 is installed
  • OR kernel-ec2-extra-3.12.38-44.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 12 is installed
  • AND Package Information
  • nodejs4-4.5.0-5 is installed
  • OR nodejs4-devel-4.5.0-5 is installed
  • OR nodejs4-docs-4.5.0-5 is installed
  • OR npm4-4.5.0-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Point of Sale 12 SP2 is installed
  • AND Package Information
  • salt-2016.11.4-45.2 is installed
  • OR salt-minion-2016.11.4-45.2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND wpa_supplicant-0.7.1-6.15.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for VMWare 11 SP3 is installed
  • AND wpa_supplicant-0.7.1-6.15.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • kdenetwork4-filesharing-4.3.5-0.4.1 is installed
  • OR kget-4.3.5-0.4.1 is installed
  • OR kopete-4.3.5-0.4.1 is installed
  • OR krdc-4.3.5-0.4.1 is installed
  • OR krfb-4.3.5-0.4.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND Package Information
  • NetworkManager-0.7.1_git20090811-3.28.2 is installed
  • OR NetworkManager-glib-0.7.1_git20090811-3.28.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • cups-filters-1.0.58-2 is installed
  • OR cups-filters-cups-browsed-1.0.58-2 is installed
  • OR cups-filters-foomatic-rip-1.0.58-2 is installed
  • OR cups-filters-ghostscript-1.0.58-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • bind-9.9.6P1-32.1 is installed
  • OR bind-chrootenv-9.9.6P1-32.1 is installed
  • OR bind-doc-9.9.6P1-32.1 is installed
  • OR bind-libs-9.9.6P1-32.1 is installed
  • OR bind-libs-32bit-9.9.6P1-32.1 is installed
  • OR bind-utils-9.9.6P1-32.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libXinerama1-1.1.3-3 is installed
  • OR libXinerama1-32bit-1.1.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND ant-1.9.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND davfs2-1.5.2-2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP5 is installed
  • AND Package Information
  • gimp-devel-2.8.18-9.18.1 is installed
  • OR libgimp-2_0-0-2.8.18-9.18.1 is installed
  • OR libgimpui-2_0-0-2.8.18-9.18.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_44-52_18-default-6-2.2 is installed
  • OR kgraft-patch-3_12_44-52_18-xen-6-2.2 is installed
  • OR kgraft-patch-SLE12_Update_7-6-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • kernel-default-4.4.74-92.38 is installed
  • OR kernel-default-base-4.4.74-92.38 is installed
  • OR kernel-default-devel-4.4.74-92.38 is installed
  • OR kernel-devel-4.4.74-92.38 is installed
  • OR kernel-macros-4.4.74-92.38 is installed
  • OR kernel-source-4.4.74-92.38 is installed
  • OR kernel-syms-4.4.74-92.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND Package Information
  • libxml2-2.7.6-0.40.1 is installed
  • OR libxml2-devel-2.7.6-0.40.1 is installed
  • OR libxml2-devel-32bit-2.7.6-0.40.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP1 is installed
  • AND Package Information
  • libpoppler-devel-0.24.4-3 is installed
  • OR libpoppler-glib-devel-0.24.4-3 is installed
  • OR libpoppler-qt4-devel-0.24.4-3 is installed
  • OR typelib-1_0-Poppler-0_18-0.24.4-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP2 is installed
  • AND Package Information
  • FastCGI-2.4.0-167 is installed
  • OR perl-FastCGI-2.4.0-167 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND Package Information
  • DirectFB-devel-1.7.1-6 is installed
  • OR lib++dfb-devel-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 is installed
  • AND Package Information
  • flash-player-11.2.202.418-11.1 is installed
  • OR flash-player-gnome-11.2.202.418-11.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
  • AND Package Information
  • kernel-default-3.12.59-60.41.2 is installed
  • OR kernel-default-extra-3.12.59-60.41.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.61 is installed
  • OR kernel-default-extra-4.12.14-197.61 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP2 is installed
  • AND Package Information
  • MozillaThunderbird-68.10.0-3.88 is installed
  • OR MozillaThunderbird-translations-common-68.10.0-3.88 is installed
  • OR MozillaThunderbird-translations-other-68.10.0-3.88 is installed
  • BACK