Описание
Security update for giflib
This update for giflib fixes the following issue:
- CVE-2026-23868: double-free result of a shallow copy can lead to memory corruption (bsc#1259502).
Список пакетов
Container bci/openjdk-devel:17
libgif7-5.2.2-150000.4.19.1
Container bci/openjdk-devel:21
libgif7-5.2.2-150000.4.19.1
Container bci/openjdk-devel:latest
libgif7-5.2.2-150000.4.19.1
Container bci/openjdk:17
libgif7-5.2.2-150000.4.19.1
Container bci/openjdk:21
libgif7-5.2.2-150000.4.19.1
Container bci/openjdk:latest
libgif7-5.2.2-150000.4.19.1
Container suse/manager/5.0/x86_64/server:latest
libgif7-5.2.2-150000.4.19.1
Container suse/multi-linux-manager/5.1/x86_64/server:latest
libgif7-5.2.2-150000.4.19.1
Image server-image-sles15sp7
libgif7-5.2.2-150000.4.19.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
giflib-devel-5.2.2-150000.4.19.1
libgif7-5.2.2-150000.4.19.1
openSUSE Leap 15.6
giflib-devel-5.2.2-150000.4.19.1
giflib-devel-32bit-5.2.2-150000.4.19.1
giflib-progs-5.2.2-150000.4.19.1
libgif7-5.2.2-150000.4.19.1
libgif7-32bit-5.2.2-150000.4.19.1
Ссылки
- Link for SUSE-SU-2026:1338-1
- E-Mail link for SUSE-SU-2026:1338-1
- SUSE Security Ratings
- SUSE Bug 1259502
- SUSE CVE CVE-2026-23868 page
Описание
Giflib contains a double-free vulnerability that is the result of a shallow copy in GifMakeSavedImage and incorrect error handling. The conditions needed to trigger this vulnerability are difficult but may be possible.
Затронутые продукты
Container bci/openjdk-devel:17:libgif7-5.2.2-150000.4.19.1
Container bci/openjdk-devel:21:libgif7-5.2.2-150000.4.19.1
Container bci/openjdk-devel:latest:libgif7-5.2.2-150000.4.19.1
Container bci/openjdk:17:libgif7-5.2.2-150000.4.19.1
Ссылки
- CVE-2026-23868
- SUSE Bug 1259502
- SUSE Bug 1262590
- SUSE Bug 1266445