Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:3812-1

Опубликовано: 19 нояб. 2018
Источник: suse-cvrf

Описание

Security update for libwpd

This update for libwpd fixes the following issues:

Security issue fixed:

  • CVE-2018-19208: Fixed illegal address access inside libwpd at function WP6ContentListener:defineTable (bsc#1115713).

Список пакетов

SUSE Linux Enterprise Desktop 12 SP3
libwpd-0_10-10-0.10.2-2.7.1
SUSE Linux Enterprise Software Development Kit 12 SP3
libwpd-0_10-10-0.10.2-2.7.1
libwpd-devel-0.10.2-2.7.1
libwpd-devel-doc-0.10.2-2.7.1
SUSE Linux Enterprise Workstation Extension 12 SP3
libwpd-0_10-10-0.10.2-2.7.1

Описание

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a denial of service attack. This is related to WPXTable.h.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP3:libwpd-0_10-10-0.10.2-2.7.1
SUSE Linux Enterprise Software Development Kit 12 SP3:libwpd-0_10-10-0.10.2-2.7.1
SUSE Linux Enterprise Software Development Kit 12 SP3:libwpd-devel-0.10.2-2.7.1
SUSE Linux Enterprise Software Development Kit 12 SP3:libwpd-devel-doc-0.10.2-2.7.1

Ссылки