Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21114-1

Опубликовано: 20 июн. 2026
Источник: suse-cvrf

Описание

Security update for mozjs128

This update for mozjs128 fixes the following issue

  • CVE-2025-70103: libjxl: heap buffer overflow when hen processing crafted pbm-images due to insufficient bounds checks (bsc#1266463).

Список пакетов

openSUSE Leap 16.0
libmozjs-128-0-128.14.0-160000.3.1
mozjs128-128.14.0-160000.3.1
mozjs128-devel-128.14.0-160000.3.1

Описание

Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM function in file lib/extras/dec/pnm.cc.


Затронутые продукты
openSUSE Leap 16.0:libmozjs-128-0-128.14.0-160000.3.1
openSUSE Leap 16.0:mozjs128-128.14.0-160000.3.1
openSUSE Leap 16.0:mozjs128-devel-128.14.0-160000.3.1

Ссылки