Update Info

SUSE-SLE-Module-Packagehub-Subpackages-15-2019-2452


Security update for djvulibre


Type: security
Severity: moderate
Issued: 2019-09-24
Description:
This update for djvulibre fixes the following issues:

Security issues fixed:

- CVE-2019-15142: Fixed heap-based buffer over-read (bsc#1146702).
- CVE-2019-15143: Fixed resource exhaustion caused by corrupted image files (bsc#1146569).
- CVE-2019-15144: Fixed denial-of-service caused by crafted PBM image files (bsc#1146571).
- CVE-2019-15145: Fixed out-of-bounds read caused by corrupted JB2 image files (bsc#1146572).
- Fixed segfault when libtiff encounters corrupted TIFF (upstream issue #295).


              

Packages


  • djvulibre-3.5.27-3.3.1