Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2022:1296-1

Опубликовано: 21 апр. 2022
Источник: suse-cvrf

Описание

Security update for openjpeg

This update for openjpeg fixes the following issues:

  • CVE-2018-14423: Fixed division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl,and pi_next_rpcl in lib/openjp3d/pi.c (bsc#1102016).
  • CVE-2018-16376: Fixed heap-based buffer overflow function t2_encode_packet in lib/openmj2/t2.c (bsc#1106881).
  • CVE-2020-8112: Fixed a heap buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c (bsc#1162090).
  • CVE-2020-15389: Fixed a use-after-free if a mix of valid and invalid files in a directory operated on by the decompressor (bsc#1173578).
  • CVE-2020-27823: Fixed a heap buffer over-write in opj_tcd_dc_level_shift_encode() (bsc#1180457),
  • CVE-2021-29338: Fixed an integer Overflow allows remote attackers to crash the application (bsc#1184774).

Список пакетов

SUSE Enterprise Storage 6
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15-ESPOS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise High Performance Computing 15-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Real Time 15 SP2
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server 15 SP1-BCL
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server 15 SP1-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server 15 SP2-BCL
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server 15 SP2-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server 15-LTSS
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server for SAP Applications 15
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Manager Proxy 4.1
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Manager Retail Branch Server 4.1
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
SUSE Manager Server 4.1
libopenjpeg1-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
openSUSE Leap 15.3
libopenjpeg1-1.5.2-150000.4.5.1
libopenjpeg1-32bit-1.5.2-150000.4.5.1
openjpeg-1.5.2-150000.4.5.1
openjpeg-devel-1.5.2-150000.4.5.1
openjpeg-devel-32bit-1.5.2-150000.4.5.1

Описание

Division-by-zero vulnerabilities in the functions pi_next_pcrl, pi_next_cprl, and pi_next_rpcl in lib/openjp3d/pi.c in OpenJPEG through 2.3.0 allow remote attackers to cause a denial of service (application crash).


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки

Описание

An issue was discovered in OpenJPEG 2.3.0. A heap-based buffer overflow was discovered in the function t2_encode_packet in lib/openmj2/t2.c. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service or possibly unspecified other impact.


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки

Описание

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to calling opj_image_destroy twice.


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки

Описание

A flaw was found in OpenJPEG's encoder. This flaw allows an attacker to pass specially crafted x,y offset input to OpenJPEG to use during encoding. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки

Описание

opj_t1_clbl_decode_processor in openjp2/t1.c in OpenJPEG 2.3.1 through 2020-01-28 has a heap-based buffer overflow in the qmfbid==1 case, a different issue than CVE-2020-6851.


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки

Описание

Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS). This occurs when the attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.


Затронутые продукты
SUSE Enterprise Storage 6:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 6:openjpeg-devel-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:libopenjpeg1-1.5.2-150000.4.5.1
SUSE Enterprise Storage 7:openjpeg-devel-1.5.2-150000.4.5.1

Ссылки
Уязвимость SUSE-SU-2022:1296-1