SUSE-SU-2015:1787-1
Dashboard / Vulnerabilities / SUSE-SU-2015:1787-1
SUSE-SU-2015:1787-1
Summary: Security update for gtk2
Details: gtk2 was updated to fix two security issues. These security issues were fixed: - CVE-2015-4491: Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, allowed remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via crafted bitmap dimensions that were mishandled during scaling (bsc#942801). - CVE-2015-7674: Fix overflow when scaling GIF files (bsc#948791). This non-security issue was fixed: - Add the script which generates gdk-pixbuf64.loaders to the spec file (bsc#922741).
References: https://www.suse.com/support/update/announcement/2015/suse-su-20151787-1/, https://bugzilla.suse.com/922741, https://bugzilla.suse.com/942801, https://bugzilla.suse.com/948791, https://www.suse.com/security/cve/CVE-2015-4491, https://www.suse.com/security/cve/CVE-2015-7674
Affected packages
Package
Name: gtk2
Purl: pkg:rpm/suse/gtk2&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
