Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:3250-1

Опубликовано: 22 дек. 2016
Источник: suse-cvrf

Описание

Security update for libgme

This update for libgme fixes the following issues:

  • CVE-2016-9957, CVE-2016-9958, CVE-2016-9959, CVE-2016-9960, CVE-2016-9961: Various issues were fixed in the handling of SPC music files that could have been exploited for gaining privileges of desktop users. [bsc#1015941]

Список пакетов

SUSE Linux Enterprise Desktop 12 SP1
libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2
libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1
libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2
libgme0-0.6.0-5.1
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
libgme0-0.6.0-5.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
libgme0-0.6.0-5.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
libgme0-0.6.0-5.1
SUSE Linux Enterprise Software Development Kit 12 SP1
libgme-devel-0.6.0-5.1
SUSE Linux Enterprise Software Development Kit 12 SP2
libgme-devel-0.6.0-5.1

Описание

Stack-based buffer overflow in game-music-emu before 0.6.1.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2:libgme0-0.6.0-5.1

Ссылки

Описание

game-music-emu before 0.6.1 allows remote attackers to write to arbitrary memory locations.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2:libgme0-0.6.0-5.1

Ссылки

Описание

game-music-emu before 0.6.1 allows remote attackers to generate out of bounds 8-bit values.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2:libgme0-0.6.0-5.1

Ссылки

Описание

game-music-emu before 0.6.1 allows local users to cause a denial of service (divide by zero and process crash).


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2:libgme0-0.6.0-5.1

Ссылки

Описание

game-music-emu before 0.6.1 mishandles unspecified integer values.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Desktop 12 SP2:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP1:libgme0-0.6.0-5.1
SUSE Linux Enterprise Server 12 SP2:libgme0-0.6.0-5.1

Ссылки