FlawAtlas
Search the atlas
SUSE-SU-2015:1787-1 Not scored

Security update for gtk2

gtk2 was updated to fix two security issues. These security issues were fixed: - CVE-2015-4491: Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, allowed remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via crafted bitmap dimensions that were mishandled during scaling (bsc#942801). - CVE-2015-7674: Fix overflow when scaling GIF files (bsc#948791). This non-security issue was fixed: - Add the script which generates gdk-pixbuf64.loaders to the spec file (bsc#922741).

Exploit probability Not scored
Published October 7, 2015
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Desktop 11 SP3 gtk2
SUSE:Linux Enterprise Desktop 11 SP4 gtk2
SUSE:Linux Enterprise Server 11 SP3 gtk2
SUSE:Linux Enterprise Server 11 SP3-TERADATA gtk2
SUSE:Linux Enterprise Server 11 SP4 gtk2
SUSE:Linux Enterprise Server for SAP Applications 11 SP3 gtk2
SUSE:Linux Enterprise Server for SAP Applications 11 SP4 gtk2
SUSE:Linux Enterprise Software Development Kit 11 SP3 gtk2
SUSE:Linux Enterprise Software Development Kit 11 SP4 gtk2

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2015:1787-1

gtk2 was updated to fix two security issues. These security issues were fixed: - CVE-2015-4491: Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, allowed remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and application crash) via crafted bitmap dimensions that were mishandled during scaling (bsc#942801). - CVE-2015-7674: Fix overflow when scaling GIF files (bsc#948791). This non-security issue was fixed: - Add the script which generates gdk-pixbuf64.loaders to the spec file (bsc#922741).

View original source

05 / REFERENCES

Further evidence