SUSE-SU-2019:1722-1
Vulnerability Summary
Timeline
Description
Security update for glib2 This update for glib2 provides the following fix: Security issues fixed: - CVE-2019-12450: Fixed an improper file permission when copy operation takes place (bsc#1137001). - CVE-2018-16428: Avoid a null pointer dereference that could crash glib2 users in markup processing (bnc#1107121). - CVE-2018-16429: Fixed out-of-bounds read vulnerability ing_markup_parse_context_parse() (bsc#1107116). Non-security issues fixed: - Install dummy *-mimeapps.list files to prevent dead symlinks. (bsc#1061599)
Affected Systems
- suse•glib2&distro=SUSE Enterprise Storage 4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Desktop 12 SP3
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Desktop 12 SP4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server 12 SP2-BCL
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server 12 SP2-LTSS
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server 12 SP3
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server 12 SP4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP2
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP3
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Software Development Kit 12 SP3
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Software Development Kit 12 SP4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Workstation Extension 12 SP3
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE Linux Enterprise Workstation Extension 12 SP4
< 2.48.2-12.12.2
- suse•glib2&distro=SUSE OpenStack Cloud 7
< 2.48.2-12.12.2
References (8)
- https://www.suse.com/support/update/announcement/2019/suse-su-20191722-1/
- https://bugzilla.suse.com/1061599
- https://bugzilla.suse.com/1107116
- https://bugzilla.suse.com/1107121
- https://bugzilla.suse.com/1137001
- https://www.suse.com/security/cve/CVE-2018-16428
- https://www.suse.com/security/cve/CVE-2018-16429
- https://www.suse.com/security/cve/CVE-2019-12450