Security update for graphite2
SUSE Patch
security@suse.de
SUSE Security Team
openSUSE-SU-2016:0875-1
Final
1
1
2016-03-24T10:24:30Z
current
2016-03-24T10:24:30Z
2016-03-24T10:24:30Z
cve-database/bin/generate-cvrf.pl
2017-02-24T01:00:00Z
Security update for graphite2
This update for graphite2 fixes the following issues:
- CVE-2016-1521: The directrun function in directmachine.cpp in
Libgraphite did not validate a certain skip operation, which allowed
remote attackers to execute arbitrary code, obtain sensitive information,
or cause a denial of service (out-of-bounds read and application crash)
via a crafted Graphite smart font.
- CVE-2016-1523: The SillMap::readFace function in FeatureMap.cpp in
Libgraphite mishandled a return value, which allowed remote attackers
to cause a denial of service (missing initialization, NULL pointer
dereference, and application crash) via a crafted Graphite smart font.
- CVE-2016-1526: The TtfUtil:LocaLookup function in TtfUtil.cpp in
Libgraphite incorrectly validated a size value, which allowed remote
attackers to obtain sensitive information or cause a denial of service
(out-of-bounds read and application crash) via a crafted Graphite
smart font.
This update was imported from the SUSE:SLE-12:Update project.
The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)
https://lists.opensuse.org/opensuse-security-announce/2016-03/msg00088.html
E-Mail link for openSUSE-SU-2016:0875-1
https://www.suse.com/support/security/rating/
SUSE Security Ratings
openSUSE Leap 42.1
graphite2-1.3.1-3.1
graphite2-devel-1.3.1-3.1
libgraphite2-3-1.3.1-3.1
libgraphite2-3-32bit-1.3.1-3.1
graphite2-1.3.1-3.1 as a component of openSUSE Leap 42.1
graphite2-devel-1.3.1-3.1 as a component of openSUSE Leap 42.1
libgraphite2-3-1.3.1-3.1 as a component of openSUSE Leap 42.1
libgraphite2-3-32bit-1.3.1-3.1 as a component of openSUSE Leap 42.1
The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not validate a certain skip operation, which allows remote attackers to execute arbitrary code, obtain sensitive information, or cause a denial of service (out-of-bounds read and application crash) via a crafted Graphite smart font.
CVE-2016-1521
openSUSE Leap 42.1:graphite2-1.3.1-3.1
openSUSE Leap 42.1:graphite2-devel-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-32bit-1.3.1-3.1
moderate
6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Please Install the update.
https://lists.opensuse.org/opensuse-security-announce/2016-03/msg00088.html
https://www.suse.com/security/cve/CVE-2016-1521.html
CVE-2016-1521
https://bugzilla.suse.com/965803
SUSE Bug 965803
https://bugzilla.suse.com/965806
SUSE Bug 965806
https://bugzilla.suse.com/965807
SUSE Bug 965807
https://bugzilla.suse.com/965810
SUSE Bug 965810
The SillMap::readFace function in FeatureMap.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, mishandles a return value, which allows remote attackers to cause a denial of service (missing initialization, NULL pointer dereference, and application crash) via a crafted Graphite smart font.
CVE-2016-1523
openSUSE Leap 42.1:graphite2-1.3.1-3.1
openSUSE Leap 42.1:graphite2-devel-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-32bit-1.3.1-3.1
moderate
Please Install the update.
https://lists.opensuse.org/opensuse-security-announce/2016-03/msg00088.html
https://www.suse.com/security/cve/CVE-2016-1523.html
CVE-2016-1523
https://bugzilla.suse.com/965803
SUSE Bug 965803
https://bugzilla.suse.com/965806
SUSE Bug 965806
https://bugzilla.suse.com/965807
SUSE Bug 965807
https://bugzilla.suse.com/965810
SUSE Bug 965810
https://bugzilla.suse.com/967087
SUSE Bug 967087
The TtfUtil:LocaLookup function in TtfUtil.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, incorrectly validates a size value, which allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a crafted Graphite smart font.
CVE-2016-1526
openSUSE Leap 42.1:graphite2-1.3.1-3.1
openSUSE Leap 42.1:graphite2-devel-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-1.3.1-3.1
openSUSE Leap 42.1:libgraphite2-3-32bit-1.3.1-3.1
moderate
6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Please Install the update.
https://lists.opensuse.org/opensuse-security-announce/2016-03/msg00088.html
https://www.suse.com/security/cve/CVE-2016-1526.html
CVE-2016-1526
https://bugzilla.suse.com/965803
SUSE Bug 965803
https://bugzilla.suse.com/965806
SUSE Bug 965806
https://bugzilla.suse.com/965807
SUSE Bug 965807
https://bugzilla.suse.com/965810
SUSE Bug 965810
https://bugzilla.suse.com/966438
SUSE Bug 966438