Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2018:1138-1

Опубликовано: 03 мая 2018
Источник: suse-cvrf

Описание

Security update for libraw

This update for libraw fixes the following issues:

  • CVE-2018-10528: A stack-based buffer overflow in the utf2char function in libraw_cxx.cpp was fixed. [boo#1091345]
  • CVE-2018-10529: A out-of-bounds read affecting the X3F property table list implementation in libraw_x3f.cpp and libraw_cxx.cpp was fixed. [boo#1091346]

Список пакетов

openSUSE Leap 42.3
libraw-0.17.1-20.1
libraw-devel-0.17.1-20.1
libraw-devel-static-0.17.1-20.1
libraw-tools-0.17.1-20.1
libraw15-0.17.1-20.1

Описание

An issue was discovered in LibRaw 0.18.9. There is a stack-based buffer overflow in the utf2char function in libraw_cxx.cpp.


Затронутые продукты
openSUSE Leap 42.3:libraw-0.17.1-20.1
openSUSE Leap 42.3:libraw-devel-0.17.1-20.1
openSUSE Leap 42.3:libraw-devel-static-0.17.1-20.1
openSUSE Leap 42.3:libraw-tools-0.17.1-20.1

Ссылки

Описание

An issue was discovered in LibRaw 0.18.9. There is an out-of-bounds read affecting the X3F property table list implementation in libraw_x3f.cpp and libraw_cxx.cpp.


Затронутые продукты
openSUSE Leap 42.3:libraw-0.17.1-20.1
openSUSE Leap 42.3:libraw-devel-0.17.1-20.1
openSUSE Leap 42.3:libraw-devel-static-0.17.1-20.1
openSUSE Leap 42.3:libraw-tools-0.17.1-20.1

Ссылки