shield
Security update for libraw
SUSE-SLE-WE-12-SP2-2017-1416
This update for libraw fixes the following issues: - CVE-2015-3885: A specially crafted raw image file could have caused a Denial of Service through an integer overflow. (bsc#930683) - CVE-2015-8367: The function phase_one_correct() did not handle memory object initialization correctly, which may have caused some other problems. (bsc#957517) - CVE-2017-6886: memory corruption in parse_tiff_ifd() func (internal/dcraw_common.cpp) could lead to Denial of service (bsc#1039380) - CVE-2017-6889: integer overflow error within the "foveon_load_camf()" function (dcraw_foveon.c) could lead to Denial of service (bsc#1039210) - CVE-2017-6890: boundary error within the "foveon_load_camf()" function (dcraw_foveon.c) (bsc#1039209)
-
Release DateAug 30 2017
-
ReferencesBugzilla: 1039209, 957517, 1039379, 1039210, 930683, 1039380
CVEs: CVE-2015-3885, CVE-2015-8367, CVE-2017-6886, CVE-2017-6887, CVE-2017-6890, CVE-2017-6899, CVE-2017-6889 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Enterprise Workstation Extension 12.2 x86_64
-
Packages