File _patchinfo of Package patchinfo.10672
<patchinfo incident="10672"> <issue tracker="bnc" id="1040109">VUL-0: CVE-2017-9111: openexr,OpenEXR: invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h</issue> <issue tracker="bnc" id="1040113">VUL-0: CVE-2017-9113: openexr,OpenEXR: invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp</issue> <issue tracker="bnc" id="1040115">VUL-0: CVE-2017-9115: openexr,OpenEXR: invalid write of size 2 in the = operator function inhalf.h</issue> <issue tracker="cve" id="2017-9113"/> <issue tracker="cve" id="2017-9111"/> <issue tracker="cve" id="2017-9115"/> <category>security</category> <rating>moderate</rating> <packager>pgajdos</packager> <description>This update for openexr fixes the following issues: Security issues fixed: - CVE-2017-9111: Fixed an invalid write of size 8 in the storeSSE function in ImfOptimizedPixelReading.h (bsc#1040109). - CVE-2017-9113: Fixed an invalid write of size 1 in the bufferedReadPixels function in ImfInputFile.cpp (bsc#1040113). - CVE-2017-9115: Fixed an invalid write of size 2 in the = operator function inhalf.h (bsc#1040115). This update was imported from the SUSE:SLE-15:Update update project.</description> <summary>Security update for openexr</summary> </patchinfo>