Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

SUSE: 2023:3000-1 Moderate: bci/openjdk-devel Security Update

suse
Calendar Grey September 13, 2022
Dist Suse Esm H88
The bci/openjdk-devel update addresses significant freetype2 vulnerabilities, correcting problematic segmentation faults and mitigating buffer overflow risks.
The container bci/openjdk-devel was updated

Summary

Advisory ID: SUSE-SU-2022:3252-1 Released: Mon Sep 12 09:07:53 2022 Summary: Security update for freetype2 Type: security Severity: moderate

References

References : 1198823 1198830 1198832 CVE-2022-27404 CVE-2022-27405 CVE-2022-27406

1198823,1198830,1198832,CVE-2022-27404,CVE-2022-27405,CVE-2022-27406

This update for freetype2 fixes the following issues:

- CVE-2022-27404 Fixed a segmentation fault via a crafted typeface (bsc#1198830).

- CVE-2022-27405 Fixed a buffer overflow via a crafted typeface (bsc#1198832).

- CVE-2022-27406 Fixed a segmentation fault via a crafted typeface (bsc#1198823).

Non-security fixes:

- Updated to version 2.10.4

The following package changes have been done:

- libfreetype6-2.10.4-150000.4.12.1 updated

- container:bci-openjdk-11-15.4-30.27 updated

Container Advisory ID : SUSE-CU-2022:2200-1
Container Tags : bci/openjdk-devel:11 , bci/openjdk-devel:11-34.58 , bci/openjdk-devel:latest
Container Release : 34.58
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here