This update for libgme fixes the following issues: - CVE-2016-9957, CVE-2016-9958, CVE-2016-9959, CVE-2016-9960, CVE-2016-9961: Various issues were fixed in the handling of SPC music files that could have been exploited for gaining privileges of desktop users. [bsc#1015941] Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 12-SP2: zypper in -t patch SUSE-SLE-SDK-12-SP2-2016-1898=1 - SUSE Linux Enterprise Software Development Kit 12-SP1: zypper in -t patch SUSE-SLE-SDK-12-SP1-2016-1898=1 - SUSE Linux Enterprise Server for Raspberry Pi 12-SP2: zypper in -t patch SUSE-SLE-RPI-12-SP2-2016-1898=1 - SUSE Linux Enterprise Server 12-SP2:
#1015941
Cross- CVE-2016-9957 CVE-2016-9958 CVE-2016-9959
CVE-2016-9960 CVE-2016-9961
Affected Products:
SUSE Linux Enterprise Software Development Kit 12-SP2
SUSE Linux Enterprise Software Development Kit 12-SP1
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2
SUSE Linux Enterprise Server 12-SP2
SUSE Linux Enterprise Server 12-SP1
SUSE Linux Enterprise Desktop 12-SP2
SUSE Linux Enterprise Desktop 12-SP1
https://www.suse.com/security/cve/CVE-2016-9957.html
https://www.suse.com/security/cve/CVE-2016-9958.html
https://www.suse.com/security/cve/CVE-2016-9959.html
https://www.suse.com/security/cve/CVE-2016-9960.html
https://www.suse.com/security/cve/CVE-2016-9961.html
https://bugzilla.suse.com/1015941
Get the latest Linux and open source security news straight to your inbox.