Security update for libcroco
This update for libcroco fixes the following issues:
Security issues fixed:
- CVE-2017-8834: Fixed denial of service (memory allocation error) via a crafted CSS file (bsc#1043898).
- CVE-2017-8871: Fixed denial of service (infinite loop and CPU consumption) via a crafted CSS file (bsc#1043899).
This update was imported from the SUSE:SLE-15:Update update project.
-
Submitted by
Michael Gorse (mgorse)
Fixed bugs
bnc#1043898
VUL-1: CVE-2017-8834: libcroco: Denial of service (memory allocation error) via a crafted CSS file.
bnc#1043899
VUL-1: CVE-2017-8871: libcroco: Denial of service (infinite loop and CPU consumption) via a crafted CSS file