Описание
Security update for mozjs128
This update for mozjs128 fixes the following issue
- CVE-2025-70103: libjxl: heap buffer overflow when hen processing crafted pbm-images due to insufficient bounds checks (bsc#1266463).
Список пакетов
openSUSE Leap 16.0
libmozjs-128-0-128.14.0-160000.3.1
mozjs128-128.14.0-160000.3.1
mozjs128-devel-128.14.0-160000.3.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1266463
- SUSE CVE CVE-2025-70103 page
Описание
Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM function in file lib/extras/dec/pnm.cc.
Затронутые продукты
openSUSE Leap 16.0:libmozjs-128-0-128.14.0-160000.3.1
openSUSE Leap 16.0:mozjs128-128.14.0-160000.3.1
openSUSE Leap 16.0:mozjs128-devel-128.14.0-160000.3.1
Ссылки
- CVE-2025-70103
- SUSE Bug 1266460