Описание
Security update for gdk2
This update for gdk2 fixes the following security issues:
- CVE-2015-7552: various overflows, including heap overflow in flipping bmp files (bsc#958963)
The following non-security issues were fixed:
- bsc#960155: fix a possible divide by zero
Список пакетов
SUSE Linux Enterprise Desktop 11 SP3
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
SUSE Linux Enterprise Desktop 11 SP4
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
SUSE Linux Enterprise Server 11 SP3
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-doc-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
gtk2-x86-2.18.9-0.39.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-doc-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
gtk2-x86-2.18.9-0.39.1
SUSE Linux Enterprise Server 11 SP4
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-doc-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
gtk2-x86-2.18.9-0.39.1
SUSE Linux Enterprise Server for SAP Applications 11 SP3
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-doc-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
gtk2-x86-2.18.9-0.39.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
gtk2-2.18.9-0.39.1
gtk2-32bit-2.18.9-0.39.1
gtk2-doc-2.18.9-0.39.1
gtk2-lang-2.18.9-0.39.1
gtk2-x86-2.18.9-0.39.1
SUSE Linux Enterprise Software Development Kit 11 SP3
gtk2-devel-2.18.9-0.39.1
gtk2-devel-32bit-2.18.9-0.39.1
SUSE Linux Enterprise Software Development Kit 11 SP4
gtk2-devel-2.18.9-0.39.1
gtk2-devel-32bit-2.18.9-0.39.1
Ссылки
- Link for SUSE-SU-2016:0282-1
- E-Mail link for SUSE-SU-2016:0282-1
- SUSE Security Ratings
- SUSE Bug 958963
- SUSE Bug 960155
- SUSE CVE CVE-2015-7552 page
Описание
Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c in gdk-pixbuf 2.30.x allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted BMP file.
Затронутые продукты
SUSE Linux Enterprise Desktop 11 SP3:gtk2-2.18.9-0.39.1
SUSE Linux Enterprise Desktop 11 SP3:gtk2-32bit-2.18.9-0.39.1
SUSE Linux Enterprise Desktop 11 SP3:gtk2-lang-2.18.9-0.39.1
SUSE Linux Enterprise Desktop 11 SP4:gtk2-2.18.9-0.39.1
Ссылки
- CVE-2015-7552
- SUSE Bug 958963