Описание
Security update for qpdf
This update for qpdf fixes the following issues:
- CVE-2021-36978: Fixed heap-based buffer overflow in Pl_ASCII85Decoder::write (bsc#1188514).
Список пакетов
SUSE Enterprise Storage 7
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP3
libqpdf26-9.0.2-150200.3.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP4
libqpdf26-9.0.2-150200.3.3.1
SUSE Linux Enterprise Server 15 SP2-BCL
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise Server 15 SP2-LTSS
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Manager Proxy 4.1
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Manager Retail Branch Server 4.1
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
SUSE Manager Server 4.1
libqpdf26-9.0.2-150200.3.3.1
qpdf-9.0.2-150200.3.3.1
qpdf-devel-9.0.2-150200.3.3.1
openSUSE Leap 15.3
libqpdf26-9.0.2-150200.3.3.1
openSUSE Leap 15.4
libqpdf26-9.0.2-150200.3.3.1
Ссылки
- Link for SUSE-SU-2022:3248-1
- E-Mail link for SUSE-SU-2022:3248-1
- SUSE Security Ratings
- SUSE Bug 1188514
- SUSE CVE CVE-2021-36978 page
Описание
QPDF 9.x through 9.1.1 and 10.x through 10.0.4 has a heap-based buffer overflow in Pl_ASCII85Decoder::write (called from Pl_AES_PDF::flush and Pl_AES_PDF::finish) when a certain downstream write fails.
Затронутые продукты
SUSE Enterprise Storage 7:libqpdf26-9.0.2-150200.3.3.1
SUSE Enterprise Storage 7:qpdf-9.0.2-150200.3.3.1
SUSE Enterprise Storage 7:qpdf-devel-9.0.2-150200.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS:libqpdf26-9.0.2-150200.3.3.1
Ссылки
- CVE-2021-36978
- SUSE Bug 1188514