Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2017:2149-1

Опубликовано: 11 авг. 2017
Источник: suse-cvrf

Описание

Security update for librsvg

This update librsvg to version 2.40.18 fixes the following issues:

Security issue fixed:

  • CVE-2017-11464: A SIGFPE is raised in the function box_blur_line of rsvg-filter.c. (bsc#1049607)

This update was imported from the SUSE:SLE-12-SP2:Update update project.

Список пакетов

openSUSE Leap 42.2
gdk-pixbuf-loader-rsvg-2.40.18-12.1
gdk-pixbuf-loader-rsvg-32bit-2.40.18-12.1
librsvg-2.40.18-12.1
librsvg-2-2-2.40.18-12.1
librsvg-2-2-32bit-2.40.18-12.1
librsvg-devel-2.40.18-12.1
rsvg-thumbnailer-2.40.18-12.1
rsvg-view-2.40.18-12.1
typelib-1_0-Rsvg-2_0-2.40.18-12.1
openSUSE Leap 42.3
gdk-pixbuf-loader-rsvg-2.40.18-12.1
gdk-pixbuf-loader-rsvg-32bit-2.40.18-12.1
librsvg-2.40.18-12.1
librsvg-2-2-2.40.18-12.1
librsvg-2-2-32bit-2.40.18-12.1
librsvg-devel-2.40.18-12.1
rsvg-thumbnailer-2.40.18-12.1
rsvg-view-2.40.18-12.1
typelib-1_0-Rsvg-2_0-2.40.18-12.1

Описание

A SIGFPE is raised in the function box_blur_line of rsvg-filter.c in GNOME librsvg 2.40.17 during an attempted parse of a crafted SVG file, because of incorrect protection against division by zero.


Затронутые продукты
openSUSE Leap 42.2:gdk-pixbuf-loader-rsvg-2.40.18-12.1
openSUSE Leap 42.2:gdk-pixbuf-loader-rsvg-32bit-2.40.18-12.1
openSUSE Leap 42.2:librsvg-2-2-2.40.18-12.1
openSUSE Leap 42.2:librsvg-2-2-32bit-2.40.18-12.1

Ссылки
Уязвимость openSUSE-SU-2017:2149-1