Описание
Security update for exiv2
This update for exiv2 fixes the following issues:
- CVE-2017-11591: A floating point exception in the Exiv2::ValueType function could lead to a remote denial of service attack via crafted input. (bsc#1050257)
- CVE-2017-14864: An invalid memory address dereference was discovered in Exiv2::getULong in types.cpp. The vulnerability caused a segmentation fault and application crash, which lead to denial of service. (bsc#1060995)
- CVE-2017-14862: An invalid memory address dereference was discovered in Exiv2::DataValue::read in value.cpp. The vulnerability caused a segmentation fault and application crash, which lead to denial of service. (bsc#1060996)
- CVE-2017-14859: An invalid memory address dereference was discovered in Exiv2::StringValueBase::read in value.cpp. The vulnerability caused a segmentation fault and application crash, which lead to denial of service. (bsc#1061000)
- CVE-2017-11683: There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp that could lead to a remote denial of service attack via crafted input. (bsc#1051188)
- CVE-2017-17669: There is a heap-based buffer over-read in the Exiv2::Internal::PngChunk::keyTXTChunk function of pngchunk_int.cpp. A crafted PNG file would lead to a remote denial of service attack. (bsc#1072928)
- CVE-2018-10958: In types.cpp a large size value might have lead to a SIGABRT during an attempt at memory allocation for an Exiv2::Internal::PngChunk::zlibUncompress call. (bsc#1092952)
- CVE-2018-10998: readMetadata in jp2image.cpp allowed remote attackers to cause a denial of service (SIGABRT) by triggering an incorrect Safe::add call. (bsc#1093095)
- CVE-2018-11531: Exiv2 had a heap-based buffer overflow in getData in preview.cpp. (bsc#1095070)
Список пакетов
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP3
Ссылки
- Link for SUSE-SU-2018:3882-1
- E-Mail link for SUSE-SU-2018:3882-1
- SUSE Security Ratings
- SUSE Bug 1050257
- SUSE Bug 1051188
- SUSE Bug 1060995
- SUSE Bug 1060996
- SUSE Bug 1061000
- SUSE Bug 1072928
- SUSE Bug 1092952
- SUSE Bug 1093095
- SUSE Bug 1095070
- SUSE CVE CVE-2017-11591 page
- SUSE CVE CVE-2017-11683 page
- SUSE CVE CVE-2017-14859 page
- SUSE CVE CVE-2017-14862 page
- SUSE CVE CVE-2017-14864 page
- SUSE CVE CVE-2017-17669 page
- SUSE CVE CVE-2018-10958 page
- SUSE CVE CVE-2018-10998 page
Описание
There is a Floating point exception in the Exiv2::ValueType function in Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.
Затронутые продукты
Ссылки
- CVE-2017-11591
- SUSE Bug 1050257
- SUSE Bug 1061023
- SUSE Bug 1061025
- SUSE Bug 1068871
Описание
There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.
Затронутые продукты
Ссылки
- CVE-2017-11683
- SUSE Bug 1051188
- SUSE Bug 1061023
- SUSE Bug 1061025
- SUSE Bug 1068871
Описание
An Invalid memory address dereference was discovered in Exiv2::StringValueBase::read in value.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.
Затронутые продукты
Ссылки
- CVE-2017-14859
- SUSE Bug 1061000
- SUSE Bug 1061023
- SUSE Bug 1061025
- SUSE Bug 1068871
Описание
An Invalid memory address dereference was discovered in Exiv2::DataValue::read in value.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.
Затронутые продукты
Ссылки
- CVE-2017-14862
- SUSE Bug 1060996
- SUSE Bug 1061023
- SUSE Bug 1061025
- SUSE Bug 1068871
Описание
An Invalid memory address dereference was discovered in Exiv2::getULong in types.cpp in Exiv2 0.26. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.
Затронутые продукты
Ссылки
- CVE-2017-14864
- SUSE Bug 1060995
- SUSE Bug 1061023
- SUSE Bug 1061025
- SUSE Bug 1068871
- SUSE Bug 1080734
Описание
There is a heap-based buffer over-read in the Exiv2::Internal::PngChunk::keyTXTChunk function of pngchunk_int.cpp in Exiv2 0.26. A crafted PNG file will lead to a remote denial of service attack.
Затронутые продукты
Ссылки
- CVE-2017-17669
- SUSE Bug 1072928
Описание
In types.cpp in Exiv2 0.26, a large size value may lead to a SIGABRT during an attempt at memory allocation for an Exiv2::Internal::PngChunk::zlibUncompress call.
Затронутые продукты
Ссылки
- CVE-2018-10958
- SUSE Bug 1092952
Описание
An issue was discovered in Exiv2 0.26. readMetadata in jp2image.cpp allows remote attackers to cause a denial of service (SIGABRT) by triggering an incorrect Safe::add call.
Затронутые продукты
Ссылки
- CVE-2018-10998
- SUSE Bug 1093095
Описание
Exiv2 0.26 has a heap-based buffer overflow in getData in preview.cpp.
Затронутые продукты
Ссылки
- CVE-2018-11531
- SUSE Bug 1095070