Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for ImageMagick (Moderate) |
Description: |
This update for ImageMagick fixes the following issues:
- CVE-2017-14997: GraphicsMagick allowed remote attackers to cause a denial of service (excessive memory allocation) because of an integer underflow in ReadPICTImage in coders/pict.c. [bsc#1112399] - CVE-2018-16644: An regression in the security fix for the pict coder was fixed (bsc#1107609)
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1000048 1001374 1004959 1008047 1008050 1031450 1031451 1046554 1046555 1052829 1056284 1072648 1081959 1081961 1081962 1083304 1083305 1084632 1094301 1101776 1101777 1101786 1101788 1101791 1101794 1101800 1101802 1101804 1101810 1106514 1107609 1112039 1112399 1124593 1144902 1151021 1168994 1173812 1174463 1174519 1174570 1175049 387731 770619 941939 955131 967012 967013 967999 982017 982018 982019 982222 982223 982285 982959 983961 983982 991080 991466 994760 994771 994774 996441 997858 997859 CVE-2004-2779 CVE-2007-4772 CVE-2007-6600 CVE-2008-2109 CVE-2009-4034 CVE-2009-4136 CVE-2010-1169 CVE-2010-1170 CVE-2010-3433 CVE-2012-0866 CVE-2012-0867 CVE-2012-0868 CVE-2012-2143 CVE-2012-2655 CVE-2012-3488 CVE-2012-3489 CVE-2013-0255 CVE-2013-1899 CVE-2013-1900 CVE-2013-1901 CVE-2014-0060 CVE-2014-0061 CVE-2014-0062 CVE-2014-0063 CVE-2014-0064 CVE-2014-0065 CVE-2014-0066 CVE-2014-0067 CVE-2015-3165 CVE-2015-3166 CVE-2015-3167 CVE-2015-4734 CVE-2015-4803 CVE-2015-4805 CVE-2015-4806 CVE-2015-4810 CVE-2015-4835 CVE-2015-4840 CVE-2015-4842 CVE-2015-4843 CVE-2015-4844 CVE-2015-4860 CVE-2015-4871 CVE-2015-4872 CVE-2015-4882 CVE-2015-4883 CVE-2015-4893 CVE-2015-4902 CVE-2015-4903 CVE-2015-4911 CVE-2015-5006 CVE-2015-5288 CVE-2015-5289 CVE-2016-0766 CVE-2016-0773 CVE-2016-2391 CVE-2016-2392 CVE-2016-2512 CVE-2016-4453 CVE-2016-4454 CVE-2016-5105 CVE-2016-5106 CVE-2016-5107 CVE-2016-5126 CVE-2016-5238 CVE-2016-5337 CVE-2016-5338 CVE-2016-5403 CVE-2016-5423 CVE-2016-5424 CVE-2016-6490 CVE-2016-6833 CVE-2016-6836 CVE-2016-6888 CVE-2016-7116 CVE-2016-7155 CVE-2016-7156 CVE-2016-7401 CVE-2016-9013 CVE-2016-9014 CVE-2017-11550 CVE-2017-11551 CVE-2017-12794 CVE-2017-14997 CVE-2017-3142 CVE-2017-3143 CVE-2017-7233 CVE-2017-7234 CVE-2017-7753 CVE-2017-7779 CVE-2017-7782 CVE-2017-7784 CVE-2017-7785 CVE-2017-7786 CVE-2017-7787 CVE-2017-7791 CVE-2017-7792 CVE-2017-7798 CVE-2017-7800 CVE-2017-7801 CVE-2017-7802 CVE-2017-7803 CVE-2017-7804 CVE-2017-7807 CVE-2018-11354 CVE-2018-11355 CVE-2018-11356 CVE-2018-11357 CVE-2018-11358 CVE-2018-11359 CVE-2018-11360 CVE-2018-11361 CVE-2018-11362 CVE-2018-14339 CVE-2018-14340 CVE-2018-14341 CVE-2018-14342 CVE-2018-14343 CVE-2018-14344 CVE-2018-14367 CVE-2018-14368 CVE-2018-14369 CVE-2018-14370 CVE-2018-16056 CVE-2018-16057 CVE-2018-16058 CVE-2018-16644 CVE-2018-18386 CVE-2018-7536 CVE-2018-7537 CVE-2019-10218 CVE-2019-14835 CVE-2019-7164 CVE-2019-7548 CVE-2020-10713 CVE-2020-14308 CVE-2020-14309 CVE-2020-14310 CVE-2020-14311 CVE-2020-15706 CVE-2020-15707 SUSE-SU-2015:2268-1 SUSE-SU-2016:0953-1 SUSE-SU-2016:2589-1 SUSE-SU-2017:1736-1 SUSE-SU-2017:2589-1 SUSE-SU-2018:0722-1 SUSE-SU-2018:1102-1 SUSE-SU-2018:2891-1 SUSE-SU-2018:3465-1 SUSE-SU-2019:2350-1 SUSE-SU-2019:2875-1 SUSE-SU-2019:2893-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP4 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
gstreamer-plugins-ugly-1.12.5-lp150.1 is installed
OR gstreamer-plugins-ugly-lang-1.12.5-lp150.1 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
curl-7.60.0-lp151.5.3 is installed
OR curl-mini-7.60.0-lp151.5.3 is installed
OR libcurl-devel-7.60.0-lp151.5.3 is installed
OR libcurl-devel-32bit-7.60.0-lp151.5.3 is installed
OR libcurl-mini-devel-7.60.0-lp151.5.3 is installed
OR libcurl4-7.60.0-lp151.5.3 is installed
OR libcurl4-32bit-7.60.0-lp151.5.3 is installed
OR libcurl4-mini-7.60.0-lp151.5.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
ImageMagick-6.8.8.1-71.85 is installed
OR libMagick++-6_Q16-3-6.8.8.1-71.85 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-71.85 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-71.85 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-71.85 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr2.0-4 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr2.0-4 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr2.0-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
MozillaFirefox-52.3.0esr-109.3 is installed
OR MozillaFirefox-devel-52.3.0esr-109.3 is installed
OR MozillaFirefox-translations-52.3.0esr-109.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
libecpg6-9.4.9-14 is installed
OR libpq5-9.4.9-14 is installed
OR libpq5-32bit-9.4.9-14 is installed
OR postgresql94-9.4.9-14 is installed
OR postgresql94-contrib-9.4.9-14 is installed
OR postgresql94-docs-9.4.9-14 is installed
OR postgresql94-server-9.4.9-14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
libjavascriptcoregtk-4_0-18-2.24.1-2.41 is installed
OR libwebkit2gtk-4_0-37-2.24.1-2.41 is installed
OR libwebkit2gtk3-lang-2.24.1-2.41 is installed
OR typelib-1_0-JavaScriptCore-4_0-2.24.1-2.41 is installed
OR typelib-1_0-WebKit2-4_0-2.24.1-2.41 is installed
OR typelib-1_0-WebKit2WebExtension-4_0-2.24.1-2.41 is installed
OR webkit2gtk-4_0-injected-bundles-2.24.1-2.41 is installed
OR webkit2gtk3-2.24.1-2.41 is installed
OR webkit2gtk3-devel-2.24.1-2.41 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND ucode-intel-20180425-13.20 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
libopenssl-devel-1.0.2j-60.30 is installed
OR libopenssl1_0_0-1.0.2j-60.30 is installed
OR libopenssl1_0_0-32bit-1.0.2j-60.30 is installed
OR libopenssl1_0_0-hmac-1.0.2j-60.30 is installed
OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.30 is installed
OR openssl-1.0.2j-60.30 is installed
OR openssl-doc-1.0.2j-60.30 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
gdk-pixbuf-loader-rsvg-2.40.15-4 is installed
OR librsvg-2-2-2.40.15-4 is installed
OR librsvg-2-2-32bit-2.40.15-4 is installed
OR rsvg-view-2.40.15-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
libldap-2_4-2-2.4.41-18.71 is installed
OR libldap-2_4-2-32bit-2.4.41-18.71 is installed
OR openldap2-2.4.41-18.71 is installed
OR openldap2-back-meta-2.4.41-18.71 is installed
OR openldap2-client-2.4.41-18.71 is installed
OR openldap2-doc-2.4.41-18.71 is installed
OR openldap2-ppolicy-check-password-1.2-18.71 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND log4j-1.2.15-126.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND dnsmasq-2.78-18.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND Package Information
bind-9.9.9P1-62 is installed
OR bind-chrootenv-9.9.9P1-62 is installed
OR bind-devel-9.9.9P1-62 is installed
OR bind-doc-9.9.9P1-62 is installed
OR bind-libs-9.9.9P1-62 is installed
OR bind-libs-32bit-9.9.9P1-62 is installed
OR bind-utils-9.9.9P1-62 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
libwireshark9-2.4.9-48.29 is installed
OR libwiretap7-2.4.9-48.29 is installed
OR libwscodecs1-2.4.9-48.29 is installed
OR libwsutil8-2.4.9-48.29 is installed
OR wireshark-2.4.9-48.29 is installed
OR wireshark-gtk-2.4.9-48.29 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
kernel-default-4.4.180-94.107 is installed
OR kernel-default-base-4.4.180-94.107 is installed
OR kernel-default-devel-4.4.180-94.107 is installed
OR kernel-default-kgraft-4.4.180-94.107 is installed
OR kernel-devel-4.4.180-94.107 is installed
OR kernel-macros-4.4.180-94.107 is installed
OR kernel-source-4.4.180-94.107 is installed
OR kernel-syms-4.4.180-94.107 is installed
OR kgraft-patch-4_4_180-94_107-default-1-4.3 is installed
OR kgraft-patch-SLE12-SP3_Update_29-1-4.3 is installed
|