[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:1769-1 -- SLES libquicktime

ID: oval:org.secpod.oval:def:89044914Date: (C)2021-07-20   (M)2022-10-10
Class: PATCHFamily: unix




This update for libquicktime fixes the following issues: * CVE-2017-9122: A DoS in quicktime_read_moov function in moov.c via acrafted mp4 file was fixed. * CVE-2017-9123: An invalid memory read in lqt_frame_duration via a crafted mp4 file was fixed. * CVE-2017-9124: A NULL pointer dereference in quicktime_match_32 via a crafted mp4 file was fixed. * CVE-2017-9125: A DoS in lqt_frame_duration function in lqt_quicktime.c via crafted mp4 file was fixed. * CVE-2017-9126: A heap-based buffer overflow in quicktime_read_dref_table via a crafted mp4 file was fixed. * CVE-2017-9127: A heap-based buffer overflow in quicktime_user_atoms_read_atom via a crafted mp4 file was fixed. * CVE-2017-9128: A heap-based buffer over-read in quicktime_video_width via a crafted mp4 file was fixed

Platform:
SUSE Linux Enterprise Server 12 SP2
Product:
libquicktime
Reference:
SUSE-SU-2017:1769-1
CVE-2017-9122
CVE-2017-9123
CVE-2017-9124
CVE-2017-9125
CVE-2017-9126
CVE-2017-9127
CVE-2017-9128
CVE    7
CVE-2017-9128
CVE-2017-9124
CVE-2017-9125
CVE-2017-9126
...
CPE    1
cpe:/o:suse:suse_linux_enterprise_server:12:sp2

© SecPod Technologies