Oval Definition:oval:org.opensuse.security:def:69467
Revision Date:2021-05-19Version:1
Title:Security update for djvulibre (Important)
Description:

This update for djvulibre fixes the following issues:

Security issues fixed:

- CVE-2021-32490 [bsc#1185895], Out of bounds write in function DJVU:filter_bv() via crafted djvu file - CVE-2021-32491 [bsc#1185900], Integer overflow in function render() in tools/ddjvu via crafted djvu file - CVE-2021-32492 [bsc#1185904], Out of bounds read in function DJVU:DataPool:has_data() via crafted djvu file - CVE-2021-32493 [bsc#1185905], Heap buffer overflow in function DJVU:GBitmap:decode() via crafted djvu file
Family:unixClass:patch
Status:Reference(s):1021689
1146687
1146690
1146691
1146692
1146766
1146776
1146784
1146785
1146787
1162689
1162691
1167373
1169659
1170313
1185895
1185900
1185904
1185905
CVE-2019-12519
CVE-2019-12521
CVE-2019-12528
CVE-2019-18860
CVE-2020-11945
CVE-2020-8517
CVE-2021-32490
CVE-2021-32491
CVE-2021-32492
CVE-2021-32493
SUSE-SU-2020:1089-1
SUSE-SU-2020:1156-1
SUSE-SU-2021:1649-1
Platform(s):SUSE Linux Enterprise High Availability 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 15-LTSS
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • AND Package Information
  • ldirectord-4.3.0184.6ee15eb2-4.22 is installed
  • OR monitoring-plugins-metadata-4.3.0184.6ee15eb2-4.22 is installed
  • OR resource-agents-4.3.0184.6ee15eb2-4.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND squid-4.11-5.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libdjvulibre-devel-3.5.27-3.11.1 is installed
  • OR libdjvulibre21-3.5.27-3.11.1 is installed
  • BACK