[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251625

 
 

909

 
 

196370

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2019:1111-1 -- SLES libjpeg-turbo, libjpeg62, libturbojpeg0

ID: oval:org.secpod.oval:def:89003434Date: (C)2021-02-27   (M)2022-10-10
Class: PATCHFamily: unix




This update for libjpeg-turbo fixes the following issues: The following security vulnerabilities were addressed: - CVE-2018-14498: Fixed a heap-based buffer over read in get_8bit_row function which could allow to an attacker to cause denial of service . - CVE-2018-11813: Fixed the end-of-file mishandling in read_pixel in rdtarga.c, which allowed remote attackers to cause a denial-of-service via crafted JPG files due to a large loop - CVE-2018-1152: Fixed a denial of service in start_input_bmp rdbmp.c caused by a divide by zero when processing a crafted BMP image

Platform:
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
Product:
libjpeg-turbo
libjpeg62
libturbojpeg0
Reference:
SUSE-SU-2019:1111-1
CVE-2018-1152
CVE-2018-11813
CVE-2018-14498
CVE    3
CVE-2018-1152
CVE-2018-11813
CVE-2018-14498
CPE    5
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/a:d.r.commander:libturbojpeg0
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
cpe:/a:d.r.commander:libjpeg62
...

© SecPod Technologies