Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:0202-1

Опубликовано: 22 янв. 2016
Источник: suse-cvrf

Описание

Security update for giflib

This update for giflib fixes the following issues:

  • CVE-2015-7555: Heap overflow in giffix (bsc#960319)
  • bsc#949160: Fix a memory leak

Список пакетов

SUSE Linux Enterprise Desktop 12
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Desktop 12 SP1
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Server 12
giflib-progs-5.0.5-7.1
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Server 12 SP1
giflib-progs-5.0.5-7.1
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Server for SAP Applications 12
giflib-progs-5.0.5-7.1
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
giflib-progs-5.0.5-7.1
libgif6-5.0.5-7.1
libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Software Development Kit 12
giflib-devel-5.0.5-7.1
SUSE Linux Enterprise Software Development Kit 12 SP1
giflib-devel-5.0.5-7.1

Описание

Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Desktop 12 SP1:libgif6-5.0.5-7.1
SUSE Linux Enterprise Desktop 12:libgif6-32bit-5.0.5-7.1
SUSE Linux Enterprise Desktop 12:libgif6-5.0.5-7.1

Ссылки