Oval Definition:oval:org.opensuse.security:def:52949
Revision Date:2020-12-01Version:1
Title:Security update for tiff (Moderate)
Description:

This update for tiff fixes the following issues:

Security issues fixed:

- CVE-2018-12900: Fixed heap-based buffer overflow in the cpSeparateBufToContigBuf (bsc#1099257). - CVE-2018-18661: Fixed NULL pointer dereference in the function LZWDecode in the file tif_lzw.c (bsc#1113672). - CVE-2018-18557: Fixed JBIG decode can lead to out-of-bounds write (bsc#1113094).

Non-security issues fixed:

- asan_build: build ASAN included - debug_build: build more suitable for debugging
Family:unixClass:patch
Status:Reference(s):1003993
1004019
1099257
1113094
1113672
1135350
1148742
930077
930078
930079
937419
949160
952254
960319
966682
CVE-2009-2624
CVE-2009-2624
CVE-2009-2905
CVE-2010-0001
CVE-2010-0001
CVE-2010-0407
CVE-2010-4531
CVE-2010-4651
CVE-2012-4504
CVE-2013-7447
CVE-2014-3675
CVE-2014-3676
CVE-2014-3677
CVE-2014-8139
CVE-2014-8140
CVE-2014-8141
CVE-2014-9636
CVE-2015-1196
CVE-2015-1395
CVE-2015-1396
CVE-2015-2924
CVE-2015-4141
CVE-2015-4142
CVE-2015-4143
CVE-2015-5310
CVE-2015-7555
CVE-2015-8025
CVE-2015-8041
CVE-2016-0764
CVE-2016-4273
CVE-2016-4286
CVE-2016-6981
CVE-2016-6982
CVE-2016-6983
CVE-2016-6984
CVE-2016-6985
CVE-2016-6986
CVE-2016-6987
CVE-2016-6989
CVE-2016-6990
CVE-2016-6992
CVE-2017-18594
CVE-2018-12900
CVE-2018-15173
CVE-2018-18557
CVE-2018-18661
SUSE-SU-2016:0202-1
SUSE-SU-2016:2305-1
SUSE-SU-2016:2512-1
SUSE-SU-2016:2550-1
SUSE-SU-2018:3925-1
SUSE-SU-2019:2425-2
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gnome-settings-daemon-3.26.2-lp150.5 is installed
  • OR gnome-settings-daemon-lang-3.26.2-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • ctdb-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR ctdb-pcp-pmda-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR ctdb-tests-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-binding0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-binding0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-samr-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-samr0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc-samr0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libdcerpc0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-krb5pac-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-krb5pac0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-krb5pac0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-nbt-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-nbt0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-nbt0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-standard-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-standard0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr-standard0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libndr0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libnetapi-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libnetapi0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libnetapi0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-credentials-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-credentials0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-credentials0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-errors-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-errors0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-errors0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-hostconfig-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-hostconfig0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-hostconfig0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-passdb-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-passdb0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-passdb0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy-python-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy-python3-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy0-python3-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-policy0-python3-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-util-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-util0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamba-util0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamdb-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamdb0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsamdb0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbclient-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbclient0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbclient0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbconf-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbconf0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbconf0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbldap-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbldap2-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libsmbldap2-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libtevent-util-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libtevent-util0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libtevent-util0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libwbclient-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libwbclient0-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR libwbclient0-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-ad-dc-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-ad-dc-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-ceph-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-client-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-client-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-core-devel-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-doc-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-dsdb-modules-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-python-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-python-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-python3-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-libs-python3-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-pidl-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-python-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-python3-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-test-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-winbind-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • OR samba-winbind-32bit-4.9.5+git.176.375e1f05788-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • curl-7.19.7-1.20.31 is installed
  • OR libcurl4-7.19.7-1.20.31 is installed
  • OR libcurl4-32bit-7.19.7-1.20.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • curl-7.19.7-1.38 is installed
  • OR libcurl4-7.19.7-1.38 is installed
  • OR libcurl4-32bit-7.19.7-1.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libecpg6-9.4.5-0.8 is installed
  • OR libpq5-9.4.5-0.8 is installed
  • OR libpq5-32bit-9.4.5-0.8 is installed
  • OR postgresql94-9.4.5-0.8 is installed
  • OR postgresql94-docs-9.4.5-0.8 is installed
  • OR postgresql94-libs-9.4.5-0.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • giflib-5.0.5-7 is installed
  • OR libgif6-5.0.5-7 is installed
  • OR libgif6-32bit-5.0.5-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libproxy1-0.4.11-11 is installed
  • OR libproxy1-32bit-0.4.11-11 is installed
  • OR libproxy1-config-gnome3-0.4.11-11 is installed
  • OR libproxy1-config-gnome3-32bit-0.4.11-11 is installed
  • OR libproxy1-networkmanager-0.4.11-11 is installed
  • OR libproxy1-networkmanager-32bit-0.4.11-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • NetworkManager-1.0.12-8 is installed
  • OR NetworkManager-lang-1.0.12-8 is installed
  • OR libnm-glib-vpn1-1.0.12-8 is installed
  • OR libnm-glib4-1.0.12-8 is installed
  • OR libnm-util2-1.0.12-8 is installed
  • OR libnm0-1.0.12-8 is installed
  • OR typelib-1_0-NM-1_0-1.0.12-8 is installed
  • OR typelib-1_0-NMClient-1_0-1.0.12-8 is installed
  • OR typelib-1_0-NetworkManager-1_0-1.0.12-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND patch-2.7.5-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND gzip-1.6-9.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND tiff-4.0.9-5.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • nmap-7.70-3.12 is installed
  • OR nping-7.70-3.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND hardlink-1.0-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_115-default-3-2 is installed
  • OR kgraft-patch-3_12_74-60_64_115-xen-3-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_34-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • dbus-1-glib-0.100.2-3 is installed
  • OR dbus-1-glib-32bit-0.100.2-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.25-38.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_73-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_21-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_73-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_21-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • bzip2-1.0.6-29 is installed
  • OR bzip2-doc-1.0.6-29 is installed
  • OR libbz2-1-1.0.6-29 is installed
  • OR libbz2-1-32bit-1.0.6-29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.60-38.47 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.60-38.47 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.60-38.47 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.60-38.47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libprocps3-3.3.9-11.14 is installed
  • OR procps-3.3.9-11.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cups-pk-helper-0.2.5-5 is installed
  • OR cups-pk-helper-lang-0.2.5-5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-Jinja2-2.7.3-15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • openssh-7.2p2-74.35 is installed
  • OR openssh-askpass-gnome-7.2p2-74.35 is installed
  • OR openssh-fips-7.2p2-74.35 is installed
  • OR openssh-helpers-7.2p2-74.35 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libpolkit0-0.113-5.18 is installed
  • OR polkit-0.113-5.18 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libvirt-3.3.0-5.40 is installed
  • OR libvirt-admin-3.3.0-5.40 is installed
  • OR libvirt-client-3.3.0-5.40 is installed
  • OR libvirt-daemon-3.3.0-5.40 is installed
  • OR libvirt-daemon-config-network-3.3.0-5.40 is installed
  • OR libvirt-daemon-config-nwfilter-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-interface-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-libxl-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-lxc-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-network-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-nodedev-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-nwfilter-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-qemu-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-secret-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-core-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-disk-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-iscsi-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-logical-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-mpath-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-rbd-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-scsi-3.3.0-5.40 is installed
  • OR libvirt-daemon-hooks-3.3.0-5.40 is installed
  • OR libvirt-daemon-lxc-3.3.0-5.40 is installed
  • OR libvirt-daemon-qemu-3.3.0-5.40 is installed
  • OR libvirt-daemon-xen-3.3.0-5.40 is installed
  • OR libvirt-doc-3.3.0-5.40 is installed
  • OR libvirt-libs-3.3.0-5.40 is installed
  • OR libvirt-lock-sanlock-3.3.0-5.40 is installed
  • OR libvirt-nss-3.3.0-5.40 is installed
  • BACK