ALT-PU-2017-2732-1
Package libXcursor updated to version 1.1.15-alt1.M80P.1 for branch p8 in task 195756.
Closed vulnerabilities
BDU:2019-01625
Уязвимость функции _XcursorThemeInherits пакета libxcursor операционной системы Debian GNU/Linux, связанная с выходом операции за границы однобайтовой кучи, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2021-01287
Уязвимость пакета libXcursor, связанная с целочисленным переполнением значения, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2015-9262
_XcursorThemeInherits in library.c in libXcursor before 1.1.15 allows remote attackers to cause denial of service or potentially code execution via a one-byte heap overflow.
- RHSA-2018:3059
- RHSA-2018:3059
- RHSA-2018:3505
- RHSA-2018:3505
- https://bugs.freedesktop.org/show_bug.cgi?id=90857
- https://bugs.freedesktop.org/show_bug.cgi?id=90857
- https://cgit.freedesktop.org/xorg/lib/libXcursor/commit/?id=897213f36baf6926daf6d192c709cf627aa5fd05
- https://cgit.freedesktop.org/xorg/lib/libXcursor/commit/?id=897213f36baf6926daf6d192c709cf627aa5fd05
- [debian-lts-announce] 20180818 [SECURITY] [DLA-1469-1] libxcursor security update
- [debian-lts-announce] 20180818 [SECURITY] [DLA-1469-1] libxcursor security update
- USN-3729-1
- USN-3729-1
Modified: 2024-11-21
CVE-2017-16612
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcursor.c in Wayland through 1.14.0.
- http://security.cucumberlinux.com/security/details.php?id=156
- http://security.cucumberlinux.com/security/details.php?id=156
- [oss-security] 20171128 CVE-2017-16612 libXcursor: heap overflows when parsing malicious files
- [oss-security] 20171128 CVE-2017-16612 libXcursor: heap overflows when parsing malicious files
- USN-3501-1
- USN-3501-1
- https://bugzilla.suse.com/show_bug.cgi?id=1065386
- https://bugzilla.suse.com/show_bug.cgi?id=1065386
- https://cgit.freedesktop.org/wayland/wayland/commit/?id=5d201df72f3d4f4cb8b8f75f980169b03507da38
- https://cgit.freedesktop.org/wayland/wayland/commit/?id=5d201df72f3d4f4cb8b8f75f980169b03507da38
- https://cgit.freedesktop.org/xorg/lib/libXcursor/commit/?id=4794b5dd34688158fb51a2943032569d3780c4b8
- https://cgit.freedesktop.org/xorg/lib/libXcursor/commit/?id=4794b5dd34688158fb51a2943032569d3780c4b8
- [debian-lts-announce] 20171210 [SECURITY] [DLA 1201-1] libxcursor security update
- [debian-lts-announce] 20171210 [SECURITY] [DLA 1201-1] libxcursor security update
- https://lists.freedesktop.org/archives/wayland-devel/2017-November/035979.html
- https://lists.freedesktop.org/archives/wayland-devel/2017-November/035979.html
- [freedesktop-xorg-announce] 20171128 libXcursor 1.1.15
- [freedesktop-xorg-announce] 20171128 libXcursor 1.1.15
- GLSA-201801-04
- GLSA-201801-04
- USN-3622-1
- USN-3622-1
- DSA-4059
- DSA-4059