Oval Definition:oval:org.opensuse.security:def:56598
Revision Date:2020-12-01Version:1
Title:Security update for gd (Moderate)
Description:

This update for gd fixes the following issues:

Security issue fixed:

- CVE-2018-1000222: Fixed a double free vulnerability in gdImageBmpPtr() that could result in remote code execution. This could have been exploited via a specially crafted JPEG image files. (bsc#1105434)
Family:unixClass:patch
Status:Reference(s):1001459
1012985
1013533
1013604
1013882
1023287
1024328
1027149
1028217
1030406
1030531
1030552
1031481
1031515
1031660
1032322
1033960
1034405
1035531
1035738
1037182
1037183
1037994
1038544
1038564
1038879
1038883
1038981
1038982
1039348
1039354
1039456
1039496
1039721
1039864
1039882
1039883
1039885
1040069
1041160
1041429
1041431
1042696
1042832
1042863
1044125
1045327
1045487
1045922
1046107
1048275
1048788
1049645
1049882
1053148
1053152
1053317
1056588
1056982
1057179
1058410
1058507
1058524
1059863
1062471
1062520
1063667
1064388
1086730
1091396
1094301
1101676
1101677
1101678
1101776
1101777
1101786
1101788
1101791
1101794
1101800
1101802
1101804
1101810
1103098
1103342
1105010
1105434
1106514
1112368
1112397
1112417
1112421
1112432
1116686
1118754
1124729
1124734
1124991
1128378
1132666
1133191
1136037
1136446
1136976
1137597
856774
860250
863764
878240
922855
922871
947337
950998
951844
953048
954847
956491
957990
962742
963655
963762
964336
965087
966245
968667
970114
970506
971770
972933
973378
973499
974165
974308
974620
975531
975533
975772
975788
977417
978401
978469
978822
979074
979213
979419
979485
979489
979521
979548
979681
979867
979879
979922
980348
980363
980371
980856
980883
981038
981143
981344
981597
982282
982354
982544
982698
983143
983213
983318
983721
983904
983977
984148
984456
984755
984764
985232
985978
986362
986365
986569
986572
986573
986811
986924
988215
988498
988552
990058
993099
994364
CVE-2014-9904
CVE-2015-4047
CVE-2015-7514
CVE-2015-7833
CVE-2015-8551
CVE-2015-8552
CVE-2015-8845
CVE-2016-0758
CVE-2016-1583
CVE-2016-2053
CVE-2016-3672
CVE-2016-4470
CVE-2016-4482
CVE-2016-4486
CVE-2016-4565
CVE-2016-4569
CVE-2016-4578
CVE-2016-4805
CVE-2016-4997
CVE-2016-5244
CVE-2016-5828
CVE-2016-5829
CVE-2016-9576
CVE-2016-9794
CVE-2016-9843
CVE-2017-1000363
CVE-2017-1000364
CVE-2017-1000365
CVE-2017-1000380
CVE-2017-10661
CVE-2017-11176
CVE-2017-12153
CVE-2017-12154
CVE-2017-12762
CVE-2017-13080
CVE-2017-14051
CVE-2017-14106
CVE-2017-14140
CVE-2017-15265
CVE-2017-15274
CVE-2017-15649
CVE-2017-7214
CVE-2017-7400
CVE-2017-7482
CVE-2017-7487
CVE-2017-7518
CVE-2017-7541
CVE-2017-7542
CVE-2017-7889
CVE-2017-8831
CVE-2017-8890
CVE-2017-8924
CVE-2017-8925
CVE-2017-9074
CVE-2017-9075
CVE-2017-9076
CVE-2017-9077
CVE-2017-9242
CVE-2018-1000140
CVE-2018-1000222
CVE-2018-11354
CVE-2018-11355
CVE-2018-11356
CVE-2018-11357
CVE-2018-11358
CVE-2018-11359
CVE-2018-11360
CVE-2018-11361
CVE-2018-11362
CVE-2018-14339
CVE-2018-14340
CVE-2018-14341
CVE-2018-14342
CVE-2018-14343
CVE-2018-14344
CVE-2018-14367
CVE-2018-14368
CVE-2018-14369
CVE-2018-14370
CVE-2018-15473
CVE-2018-16056
CVE-2018-16057
CVE-2018-16058
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2018-5391
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-2529
CVE-2019-2537
CVE-2019-3846
CVE-2019-6974
CVE-2019-6975
CVE-2019-7221
CVE-2019-8457
CVE-2019-9213
SUSE-SU-2016:2105-1
SUSE-SU-2016:3188-1
SUSE-SU-2017:1443-1
SUSE-SU-2017:1944-1
SUSE-SU-2017:2908-1
SUSE-SU-2018:0828-1
SUSE-SU-2018:2837-1
SUSE-SU-2018:2891-1
SUSE-SU-2018:3910-1
SUSE-SU-2019:1601-1
SUSE-SU-2019:2042-1
SUSE-SU-2019:2048-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND cups-filters-1.20.3-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • ncat-7.70-lp151.3.3 is installed
  • OR ndiff-7.70-lp151.3.3 is installed
  • OR nmap-7.70-lp151.3.3 is installed
  • OR nping-7.70-lp151.3.3 is installed
  • OR zenmap-7.70-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • gd-2.1.0-24.9 is installed
  • OR gd-32bit-2.1.0-24.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • kernel-default-3.12.62-60.62 is installed
  • OR kernel-default-base-3.12.62-60.62 is installed
  • OR kernel-default-devel-3.12.62-60.62 is installed
  • OR kernel-default-man-3.12.62-60.62 is installed
  • OR kernel-devel-3.12.62-60.62 is installed
  • OR kernel-macros-3.12.62-60.62 is installed
  • OR kernel-source-3.12.62-60.62 is installed
  • OR kernel-syms-3.12.62-60.62 is installed
  • OR kernel-xen-3.12.62-60.62 is installed
  • OR kernel-xen-base-3.12.62-60.62 is installed
  • OR kernel-xen-devel-3.12.62-60.62 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_35-default-3-3 is installed
  • OR kgraft-patch-3_12_69-60_64_35-xen-3-3 is installed
  • OR kgraft-patch-SLE12-SP1_Update_14-3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND ipsec-tools-0.8.0-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • ghostscript-9.25-23.13 is installed
  • OR ghostscript-x11-9.25-23.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.30 is installed
  • OR openssl-1.0.2j-60.30 is installed
  • OR openssl-doc-1.0.2j-60.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND binutils-2.26.1-9.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • cups-1.7.5-20.29 is installed
  • OR cups-client-1.7.5-20.29 is installed
  • OR cups-libs-1.7.5-20.29 is installed
  • OR cups-libs-32bit-1.7.5-20.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.241-43.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND ant-1.9.4-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-ironic-4.2.3~a0~dev14-1 is installed
  • OR openstack-ironic-api-4.2.3~a0~dev14-1 is installed
  • OR openstack-ironic-conductor-4.2.3~a0~dev14-1 is installed
  • OR python-ironic-4.2.3~a0~dev14-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • openstack-ceilometer-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-agent-central-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-agent-compute-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-agent-ipmi-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-agent-notification-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-api-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-collector-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-doc-7.0.4~a0~dev7-3 is installed
  • OR openstack-ceilometer-polling-7.0.4~a0~dev7-3 is installed
  • OR openstack-cinder-9.1.5~a0~dev1-3 is installed
  • OR openstack-cinder-api-9.1.5~a0~dev1-3 is installed
  • OR openstack-cinder-backup-9.1.5~a0~dev1-3 is installed
  • OR openstack-cinder-doc-9.1.5~a0~dev1-3 is installed
  • OR openstack-cinder-scheduler-9.1.5~a0~dev1-3 is installed
  • OR openstack-cinder-volume-9.1.5~a0~dev1-3 is installed
  • OR openstack-dashboard-10.0.4~a0~dev2-3 is installed
  • OR openstack-glance-13.0.1~a0~dev6-3 is installed
  • OR openstack-glance-api-13.0.1~a0~dev6-3 is installed
  • OR openstack-glance-doc-13.0.1~a0~dev6-3 is installed
  • OR openstack-glance-glare-13.0.1~a0~dev6-3 is installed
  • OR openstack-glance-registry-13.0.1~a0~dev6-3 is installed
  • OR openstack-heat-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-api-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-api-cfn-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-api-cloudwatch-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-doc-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-engine-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-plugin-heat_docker-7.0.4~a0~dev4-4 is installed
  • OR openstack-heat-test-7.0.4~a0~dev4-4 is installed
  • OR openstack-keystone-10.0.2~a0~dev2-6 is installed
  • OR openstack-keystone-doc-10.0.2~a0~dev2-6 is installed
  • OR openstack-magnum-3.1.2~a0~dev22-13 is installed
  • OR openstack-magnum-api-3.1.2~a0~dev22-13 is installed
  • OR openstack-magnum-conductor-3.1.2~a0~dev22-13 is installed
  • OR openstack-magnum-doc-3.1.2~a0~dev22-13 is installed
  • OR openstack-manila-3.0.1~a0~dev27-3 is installed
  • OR openstack-manila-api-3.0.1~a0~dev27-3 is installed
  • OR openstack-manila-data-3.0.1~a0~dev27-3 is installed
  • OR openstack-manila-doc-3.0.1~a0~dev27-3 is installed
  • OR openstack-manila-scheduler-3.0.1~a0~dev27-3 is installed
  • OR openstack-manila-share-3.0.1~a0~dev27-3 is installed
  • OR openstack-nova-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-api-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-cells-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-cert-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-compute-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-conductor-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-console-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-consoleauth-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-doc-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-novncproxy-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-placement-api-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-scheduler-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-serialproxy-14.0.6~a0~dev16-3 is installed
  • OR openstack-nova-vncproxy-14.0.6~a0~dev16-3 is installed
  • OR python-ceilometer-7.0.4~a0~dev7-3 is installed
  • OR python-cinder-9.1.5~a0~dev1-3 is installed
  • OR python-glance-13.0.1~a0~dev6-3 is installed
  • OR python-heat-7.0.4~a0~dev4-4 is installed
  • OR python-horizon-10.0.4~a0~dev2-3 is installed
  • OR python-keystone-10.0.2~a0~dev2-6 is installed
  • OR python-magnum-3.1.2~a0~dev22-13 is installed
  • OR python-manila-3.0.1~a0~dev27-3 is installed
  • OR python-nova-14.0.6~a0~dev16-3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libmysqlclient18-10.0.38-29.27 is installed
  • OR mariadb-10.0.38-29.27 is installed
  • BACK