Описание
Security update for openjpeg2
This update for openjpeg2 fixes the following issues:
- CVE-2018-18088: Fixed a null pointer dereferencei in imagetopnm function. (bsc#1111638).
Список пакетов
Container suse/kiosk/firefox-esr:latest
libopenjp2-7-2.3.0-150000.3.21.1
Container suse/kiosk/xorg-client:latest
libopenjp2-7-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Basesystem 15 SP6
libopenjp2-7-2.3.0-150000.3.21.1
openjpeg2-2.3.0-150000.3.21.1
openjpeg2-devel-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
libopenjp2-7-2.3.0-150000.3.21.1
openjpeg2-2.3.0-150000.3.21.1
openjpeg2-devel-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Package Hub 15 SP6
libopenjp2-7-32bit-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Package Hub 15 SP7
libopenjp2-7-32bit-2.3.0-150000.3.21.1
openSUSE Leap 15.6
libopenjp2-7-2.3.0-150000.3.21.1
libopenjp2-7-32bit-2.3.0-150000.3.21.1
openjpeg2-2.3.0-150000.3.21.1
openjpeg2-devel-2.3.0-150000.3.21.1
Ссылки
- Link for SUSE-SU-2025:03352-1
- E-Mail link for SUSE-SU-2025:03352-1
- SUSE Security Ratings
- SUSE Bug 1111638
- SUSE CVE CVE-2018-18088 page
Описание
OpenJPEG 2.3.0 has a NULL pointer dereference for "red" in the imagetopnm function of jp2/convert.c
Затронутые продукты
Container suse/kiosk/firefox-esr:latest:libopenjp2-7-2.3.0-150000.3.21.1
Container suse/kiosk/xorg-client:latest:libopenjp2-7-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:libopenjp2-7-2.3.0-150000.3.21.1
SUSE Linux Enterprise Module for Basesystem 15 SP6:openjpeg2-2.3.0-150000.3.21.1
Ссылки
- CVE-2018-18088
- SUSE Bug 1111638