vulnerability

SUSE: CVE-2016-2329: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Feb 12, 2016
Added
Feb 21, 2016
Modified
Jan 26, 2018

Description

libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted TIFF file, related to the tiff_decode_tag and decode_frame functions.

Solutions

suse-upgrade-ffmpegsuse-upgrade-ffmpeg-debuginfosuse-upgrade-ffmpeg-debugsourcesuse-upgrade-ffmpeg-develsuse-upgrade-libavcodec-develsuse-upgrade-libavcodec56suse-upgrade-libavcodec56-32bitsuse-upgrade-libavcodec56-debuginfosuse-upgrade-libavcodec56-debuginfo-32bitsuse-upgrade-libavdevice-develsuse-upgrade-libavdevice56suse-upgrade-libavdevice56-32bitsuse-upgrade-libavdevice56-debuginfosuse-upgrade-libavdevice56-debuginfo-32bitsuse-upgrade-libavfilter-develsuse-upgrade-libavfilter5suse-upgrade-libavfilter5-32bitsuse-upgrade-libavfilter5-debuginfosuse-upgrade-libavfilter5-debuginfo-32bitsuse-upgrade-libavformat-develsuse-upgrade-libavformat56suse-upgrade-libavformat56-32bitsuse-upgrade-libavformat56-debuginfosuse-upgrade-libavformat56-debuginfo-32bitsuse-upgrade-libavresample-develsuse-upgrade-libavresample2suse-upgrade-libavresample2-32bitsuse-upgrade-libavresample2-debuginfosuse-upgrade-libavresample2-debuginfo-32bitsuse-upgrade-libavutil-develsuse-upgrade-libavutil54suse-upgrade-libavutil54-32bitsuse-upgrade-libavutil54-debuginfosuse-upgrade-libavutil54-debuginfo-32bitsuse-upgrade-libpostproc-develsuse-upgrade-libpostproc53suse-upgrade-libpostproc53-32bitsuse-upgrade-libpostproc53-debuginfosuse-upgrade-libpostproc53-debuginfo-32bitsuse-upgrade-libswresample-develsuse-upgrade-libswresample1suse-upgrade-libswresample1-32bitsuse-upgrade-libswresample1-debuginfosuse-upgrade-libswresample1-debuginfo-32bitsuse-upgrade-libswscale-develsuse-upgrade-libswscale3suse-upgrade-libswscale3-32bitsuse-upgrade-libswscale3-debuginfosuse-upgrade-libswscale3-debuginfo-32bit
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.