vulnerability

SUSE: CVE-2017-6312: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Mar 9, 2017
Added
Sep 6, 2017
Modified
Feb 4, 2022

Description

Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation fault and application crash) via a crafted image entry offset in an ICO file, which triggers an out-of-bounds read, related to compiler optimizations.

Solution(s)

suse-upgrade-gdk-pixbuf-develsuse-upgrade-gdk-pixbuf-langsuse-upgrade-gdk-pixbuf-query-loaderssuse-upgrade-gdk-pixbuf-query-loaders-32bitsuse-upgrade-gdk-pixbuf-thumbnailersuse-upgrade-gtk2suse-upgrade-gtk2-32bitsuse-upgrade-gtk2-develsuse-upgrade-gtk2-devel-32bitsuse-upgrade-gtk2-docsuse-upgrade-gtk2-langsuse-upgrade-gtk2-x86suse-upgrade-libgdk_pixbuf-2_0-0suse-upgrade-libgdk_pixbuf-2_0-0-32bitsuse-upgrade-typelib-1_0-gdkpixbuf-2_0suse-upgrade-typelib-1_0-gdkpixdata-2_0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.