SUSE-SU-2018:1453-1
Dashboard / Vulnerabilities / SUSE-SU-2018:1453-1
SUSE-SU-2018:1453-1
Summary: Security update for cairo
Details: This update for cairo fixes the following issues: - CVE-2016-9082: Fixed a segfault when using >4GB images since int values were used for pointer operations (bsc#1007255). - CVE-2017-9814: Replace malloc with _cairo_malloc and check cmap size before allocating to prevent DoS (bsc#1049092). - CVE-2017-7475: Fix a segfault in get_bitmap_surface due to malformed font (bsc#1036789).
References: https://www.suse.com/support/update/announcement/2018/suse-su-20181453-1/, https://bugzilla.suse.com/1007255, https://bugzilla.suse.com/1036789, https://bugzilla.suse.com/1049092, https://www.suse.com/security/cve/CVE-2016-9082, https://www.suse.com/security/cve/CVE-2017-7475, https://www.suse.com/security/cve/CVE-2017-9814
Affected packages
Package
Name: cairo
Purl: pkg:rpm/suse/cairo&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
