SUSE-SU-2020:0623-1
Not scored
Security update for gd
This update for gd fixes the following issues: - CVE-2017-7890: Fixed a buffer over-read into uninitialized memory (bsc#1050241). - CVE-2018-14553: Fixed a null pointer dereference in gdImageClone() (bsc#1165471). - CVE-2019-11038: Fixed a information disclosure in gdImageCreateFromXbm() (bsc#1140120).
Exploit probability
Not scored
Published
March 9, 2020
Required by
Not available
Last source change
February 4, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2020:0623-1
View original source
This update for gd fixes the following issues: - CVE-2017-7890: Fixed a buffer over-read into uninitialized memory (bsc#1050241). - CVE-2018-14553: Fixed a null pointer dereference in gdImageClone() (bsc#1165471). - CVE-2019-11038: Fixed a information disclosure in gdImageCreateFromXbm() (bsc#1140120).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1050241
- https://bugzilla.suse.com/1140120
- https://bugzilla.suse.com/1165471
- https://www.suse.com/security/cve/CVE-2017-7890
- https://www.suse.com/security/cve/CVE-2018-14553
- https://www.suse.com/security/cve/CVE-2019-11038
- https://www.suse.com/support/update/announcement/2020/suse-su-20200623-1/