ALT-BU-2016-2670-1
Branch sisyphus update bulletin.
Package libmatekbd updated to version 1.12.1-alt2_1 for branch sisyphus in task 162105.
Closed bugs
*.gir не в devel пакете
Package mate-menus updated to version 1.12.0-alt2_3 for branch sisyphus in task 162107.
Closed bugs
Зависимость на mate-menus
Package libgdk-pixbuf updated to version 2.34.0-alt1 for branch sisyphus in task 162032.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-8875
Multiple integer overflows in the (1) pixops_composite_nearest, (2) pixops_composite_color_nearest, and (3) pixops_process functions in pixops/pixops.c in gdk-pixbuf before 2.33.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted image, which triggers a heap-based buffer overflow.
- DSA-3589
- DSA-3589
- [oss-security] 20160512 Possible CVE request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- [oss-security] 20160512 Possible CVE request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- [oss-security] 20160516 Re: CVE Request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- [oss-security] 20160516 Re: CVE Request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- [oss-security] 20160517 Re: CVE Request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- [oss-security] 20160517 Re: CVE Request: gdk-pixbuf: Additional fixes to protect against overlows in pixops_* functions (similar to CVE-2015-7674)
- USN-3085-1
- USN-3085-1
- https://git.gnome.org/browse/gdk-pixbuf/commit/?id=dbfe8f70471864818bf458a39c8a99640895bd22
- https://git.gnome.org/browse/gdk-pixbuf/commit/?id=dbfe8f70471864818bf458a39c8a99640895bd22
Package libwebkitgtk4 updated to version 2.12.0-alt1 for branch sisyphus in task 162032.
Closed vulnerabilities
BDU:2016-01450
Уязвимость операционной системы iOS и браузера Safari, позволяющая нарушителю получить конфиденциальную информацию
Modified: 2024-11-21
CVE-2016-1858
WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attackers to obtain sensitive information via a crafted web site.
- APPLE-SA-2016-05-16-1
- APPLE-SA-2016-05-16-1
- APPLE-SA-2016-05-16-2
- APPLE-SA-2016-05-16-2
- APPLE-SA-2016-05-16-5
- APPLE-SA-2016-05-16-5
- http://packetstormsecurity.com/files/137229/WebKitGTK-Code-Execution-Denial-Of-Service-Memory-Corruption.html
- http://packetstormsecurity.com/files/137229/WebKitGTK-Code-Execution-Denial-Of-Service-Memory-Corruption.html
- 20160530 WebKitGTK+ Security Advisory WSA-2016-0004
- 20160530 WebKitGTK+ Security Advisory WSA-2016-0004
- 1035888
- 1035888
- https://support.apple.com/HT206564
- https://support.apple.com/HT206564
- https://support.apple.com/HT206565
- https://support.apple.com/HT206565
- https://support.apple.com/HT206568
- https://support.apple.com/HT206568