Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:2302-1

Опубликовано: 14 сент. 2016
Источник: suse-cvrf

Описание

Security update for gd

This update for gd fixes the following issues:

  • security update:
    • CVE-2016-6161: global out of bounds read when encoding gif from malformed input withgd2togif [bsc#988032]

Список пакетов

SUSE Linux Enterprise Server 11 SP4
gd-2.0.36.RC1-52.22.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
gd-2.0.36.RC1-52.22.1
SUSE Linux Enterprise Software Development Kit 11 SP4
gd-devel-2.0.36.RC1-52.22.1

Описание

The output function in gd_gif_out.c in the GD Graphics Library (aka libgd) allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:gd-2.0.36.RC1-52.22.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4:gd-2.0.36.RC1-52.22.1
SUSE Linux Enterprise Software Development Kit 11 SP4:gd-devel-2.0.36.RC1-52.22.1

Ссылки