Bugzilla – Full Text Bug Listing |
Summary: | VUL-0: CVE-2018-6187: In Artifex MuPDF 1.12.0, there is a heap-based buffer overflow vulnerability in the do_pdf_save_document function in the pdf/pdf-write.c file. Remote attackerscould leverage the vulnerability to cause a denial of serv | ||
---|---|---|---|
Product: | [openSUSE] openSUSE Distribution | Reporter: | Karol Babioch <karol> |
Component: | Security | Assignee: | Security Team bot <security-team> |
Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
Severity: | Normal | ||
Priority: | P3 - Medium | CC: | astieger, ismail, karol |
Version: | Leap 42.3 | ||
Target Milestone: | --- | ||
Hardware: | Other | ||
OS: | Other | ||
URL: | https://smash.suse.de/issue/198891/ | ||
Whiteboard: | CVSSv3:RedHat:CVE-2018-6187:3.3:(AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L) | ||
Found By: | Security Response Team | Services Priority: | |
Business Priority: | Blocker: | --- | |
Marketing QA Status: | --- | IT Deployment: | --- |
Description
Karol Babioch
2018-01-24 13:25:36 UTC
(In reply to Karol Babioch from comment #1) > https://build.opensuse.org/request/show/571907 Karol, this is great. Thank you. (Thanks for fixing it in the devel project too!) This is an autogenerated message for OBS integration: This bug (1077407) was mentioned in https://build.opensuse.org/request/show/572054 42.3 / mupdf This is an autogenerated message for OBS integration: This bug (1077407) was mentioned in https://build.opensuse.org/request/show/572115 42.3 / mupdf release for Leap, done openSUSE-SU-2018:0405-1: An update that fixes three vulnerabilities is now available. Category: security (moderate) Bug References: 1077407,1077755,1079100 CVE References: CVE-2018-6187,CVE-2018-6192,CVE-2018-6544 Sources used: openSUSE Leap 42.3 (src): mupdf-1.12.0-28.1 |