Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2022-1622 (GCVE-0-2022-1622)
Vulnerability from cvelistv5
Published
2022-05-11 00:00
Modified
2024-08-03 00:10
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- Out-of-bounds read in libtiff
Summary
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
References
Impacted products
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-03T00:10:03.771Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_transferred" ], "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "tags": [ "x_transferred" ], "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "tags": [ "x_transferred" ], "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "tags": [ "x_transferred" ], "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "name": "FEDORA-2022-ea3ebeff3d", "tags": [ "vendor-advisory", "x_transferred" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "name": "FEDORA-2022-e9fe21d102", "tags": [ "vendor-advisory", "x_transferred" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213443" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213444" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213446" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213488" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213486" }, { "tags": [ "x_transferred" ], "url": "https://support.apple.com/kb/HT213487" }, { "name": "20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13", "tags": [ "mailing-list", "x_transferred" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/41" }, { "name": "20221030 APPLE-SA-2022-10-24-2 macOS Ventura 13", "tags": [ "mailing-list", "x_transferred" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/28" }, { "name": "20221030 APPLE-SA-2022-10-27-3 Additional information for APPLE-SA-2022-09-12-1 iOS 16", "tags": [ "mailing-list", "x_transferred" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/39" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "libtiff", "vendor": "libtiff", "versions": [ { "status": "affected", "version": "3079627ea0dee150e6a208cec8381de611bb842b" } ] } ], "credits": [ { "lang": "en", "value": "wangdw.augustus@gmail.com" } ], "descriptions": [ { "lang": "en", "value": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa." } ], "metrics": [ { "cvssV3_1": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" } } ], "problemTypes": [ { "descriptions": [ { "description": "Out-of-bounds read in libtiff", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2022-10-30T00:00:00", "orgId": "ceab7361-8a18-47b1-92ba-4d7d25f6715a", "shortName": "GitLab" }, "references": [ { "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "name": "FEDORA-2022-ea3ebeff3d", "tags": [ "vendor-advisory" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "name": "FEDORA-2022-e9fe21d102", "tags": [ "vendor-advisory" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "url": "https://support.apple.com/kb/HT213443" }, { "url": "https://support.apple.com/kb/HT213444" }, { "url": "https://support.apple.com/kb/HT213446" }, { "url": "https://support.apple.com/kb/HT213488" }, { "url": "https://support.apple.com/kb/HT213486" }, { "url": "https://support.apple.com/kb/HT213487" }, { "name": "20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13", "tags": [ "mailing-list" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/41" }, { "name": "20221030 APPLE-SA-2022-10-24-2 macOS Ventura 13", "tags": [ "mailing-list" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/28" }, { "name": "20221030 APPLE-SA-2022-10-27-3 Additional information for APPLE-SA-2022-09-12-1 iOS 16", "tags": [ "mailing-list" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/39" } ] } }, "cveMetadata": { "assignerOrgId": "ceab7361-8a18-47b1-92ba-4d7d25f6715a", "assignerShortName": "GitLab", "cveId": "CVE-2022-1622", "datePublished": "2022-05-11T00:00:00", "dateReserved": "2022-05-09T00:00:00", "dateUpdated": "2024-08-03T00:10:03.771Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2022-1622\",\"sourceIdentifier\":\"cve@gitlab.com\",\"published\":\"2022-05-11T15:15:09.237\",\"lastModified\":\"2024-11-21T06:41:06.947\",\"vulnStatus\":\"Modified\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.\"},{\"lang\":\"es\",\"value\":\"La rama maestra de LibTIFF presenta una lectura fuera de l\u00edmites en LZWDecode en libtiff/tif_lzw.c:619, permitiendo a atacantes causar una denegaci\u00f3n de servicio por medio de un archivo tiff dise\u00f1ado. Para usuarios que compilan libtiff a partir de las fuentes, la correcci\u00f3n est\u00e1 disponible con el commit b4e79bfa\"}],\"metrics\":{\"cvssMetricV31\":[{\"source\":\"cve@gitlab.com\",\"type\":\"Secondary\",\"cvssData\":{\"version\":\"3.1\",\"vectorString\":\"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H\",\"baseScore\":5.5,\"baseSeverity\":\"MEDIUM\",\"attackVector\":\"LOCAL\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"NONE\",\"userInteraction\":\"REQUIRED\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"HIGH\"},\"exploitabilityScore\":1.8,\"impactScore\":3.6},{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"3.1\",\"vectorString\":\"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H\",\"baseScore\":5.5,\"baseSeverity\":\"MEDIUM\",\"attackVector\":\"LOCAL\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"NONE\",\"userInteraction\":\"REQUIRED\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"HIGH\"},\"exploitabilityScore\":1.8,\"impactScore\":3.6}],\"cvssMetricV2\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"2.0\",\"vectorString\":\"AV:N/AC:M/Au:N/C:N/I:N/A:P\",\"baseScore\":4.3,\"accessVector\":\"NETWORK\",\"accessComplexity\":\"MEDIUM\",\"authentication\":\"NONE\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"PARTIAL\"},\"baseSeverity\":\"MEDIUM\",\"exploitabilityScore\":8.6,\"impactScore\":2.9,\"acInsufInfo\":false,\"obtainAllPrivilege\":false,\"obtainUserPrivilege\":false,\"obtainOtherPrivilege\":false,\"userInteractionRequired\":true}]},\"weaknesses\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-125\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:libtiff:libtiff:4.3.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"76620D77-DCB3-484A-AAB0-4CC75FB60C29\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"80E516C0-98A4-4ADE-B69F-66A772E2BAAA\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"5C675112-476C-4D7C-BCB9-A2FB2D0BC9FD\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"E7CF3019-975D-40BB-A8A4-894E62BD3797\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*\",\"versionEndExcluding\":\"16.0\",\"matchCriteriaId\":\"D1D9387F-63B6-41B3-8BDC-A6102EE5F1E2\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*\",\"versionStartIncluding\":\"11.0\",\"versionEndExcluding\":\"11.7\",\"matchCriteriaId\":\"8400BA2C-947C-40A8-AD5A-9BF477397E0D\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*\",\"versionStartIncluding\":\"12.0\",\"versionEndExcluding\":\"12.6\",\"matchCriteriaId\":\"7B7BC361-3A04-4C88-A3AE-82B9993A73A0\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*\",\"versionEndExcluding\":\"16.0\",\"matchCriteriaId\":\"534DED19-82FC-4E39-BFD3-F2FE5C71A66B\"},{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*\",\"versionEndExcluding\":\"9.0\",\"matchCriteriaId\":\"712A2CD4-6807-496A-8467-BFB138371E51\"}]}]}],\"references\":[{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/28\",\"source\":\"cve@gitlab.com\"},{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/39\",\"source\":\"cve@gitlab.com\"},{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/41\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Patch\",\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/libtiff/libtiff/-/issues/410\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Exploit\",\"Third Party Advisory\"]},{\"url\":\"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/\",\"source\":\"cve@gitlab.com\"},{\"url\":\"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/\",\"source\":\"cve@gitlab.com\"},{\"url\":\"https://security.netapp.com/advisory/ntap-20220616-0005/\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213443\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213444\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213446\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213486\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213487\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213488\",\"source\":\"cve@gitlab.com\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/28\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/39\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"http://seclists.org/fulldisclosure/2022/Oct/41\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Patch\",\"Third Party Advisory\"]},{\"url\":\"https://gitlab.com/libtiff/libtiff/-/issues/410\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Exploit\",\"Third Party Advisory\"]},{\"url\":\"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\"},{\"url\":\"https://security.netapp.com/advisory/ntap-20220616-0005/\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213443\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213444\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213446\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213486\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213487\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]},{\"url\":\"https://support.apple.com/kb/HT213488\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Release Notes\",\"Third Party Advisory\"]}]}}" } }
fkie_cve-2022-1622
Vulnerability from fkie_nvd
Published
2022-05-11 15:15
Modified
2024-11-21 06:41
Severity ?
5.5 (Medium) - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
5.5 (Medium) - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
5.5 (Medium) - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Summary
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
References
▶ | URL | Tags | |
---|---|---|---|
cve@gitlab.com | http://seclists.org/fulldisclosure/2022/Oct/28 | ||
cve@gitlab.com | http://seclists.org/fulldisclosure/2022/Oct/39 | ||
cve@gitlab.com | http://seclists.org/fulldisclosure/2022/Oct/41 | Third Party Advisory | |
cve@gitlab.com | https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json | Third Party Advisory | |
cve@gitlab.com | https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a | Patch, Third Party Advisory | |
cve@gitlab.com | https://gitlab.com/libtiff/libtiff/-/issues/410 | Exploit, Third Party Advisory | |
cve@gitlab.com | https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/ | ||
cve@gitlab.com | https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/ | ||
cve@gitlab.com | https://security.netapp.com/advisory/ntap-20220616-0005/ | Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213443 | Release Notes, Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213444 | Release Notes, Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213446 | Release Notes, Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213486 | Release Notes, Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213487 | Release Notes, Third Party Advisory | |
cve@gitlab.com | https://support.apple.com/kb/HT213488 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://seclists.org/fulldisclosure/2022/Oct/28 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://seclists.org/fulldisclosure/2022/Oct/39 | ||
af854a3a-2127-422b-91ae-364da2661108 | http://seclists.org/fulldisclosure/2022/Oct/41 | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a | Patch, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://gitlab.com/libtiff/libtiff/-/issues/410 | Exploit, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/ | ||
af854a3a-2127-422b-91ae-364da2661108 | https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/ | ||
af854a3a-2127-422b-91ae-364da2661108 | https://security.netapp.com/advisory/ntap-20220616-0005/ | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213443 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213444 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213446 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213486 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213487 | Release Notes, Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://support.apple.com/kb/HT213488 | Release Notes, Third Party Advisory |
Impacted products
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:libtiff:libtiff:4.3.0:*:*:*:*:*:*:*", "matchCriteriaId": "76620D77-DCB3-484A-AAB0-4CC75FB60C29", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*", "matchCriteriaId": "80E516C0-98A4-4ADE-B69F-66A772E2BAAA", "vulnerable": true }, { "criteria": "cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*", "matchCriteriaId": "5C675112-476C-4D7C-BCB9-A2FB2D0BC9FD", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:*", "matchCriteriaId": "E7CF3019-975D-40BB-A8A4-894E62BD3797", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*", "matchCriteriaId": "D1D9387F-63B6-41B3-8BDC-A6102EE5F1E2", "versionEndExcluding": "16.0", "vulnerable": true }, { "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "matchCriteriaId": "8400BA2C-947C-40A8-AD5A-9BF477397E0D", "versionEndExcluding": "11.7", "versionStartIncluding": "11.0", "vulnerable": true }, { "criteria": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "matchCriteriaId": "7B7BC361-3A04-4C88-A3AE-82B9993A73A0", "versionEndExcluding": "12.6", "versionStartIncluding": "12.0", "vulnerable": true }, { "criteria": "cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*", "matchCriteriaId": "534DED19-82FC-4E39-BFD3-F2FE5C71A66B", "versionEndExcluding": "16.0", "vulnerable": true }, { "criteria": "cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*", "matchCriteriaId": "712A2CD4-6807-496A-8467-BFB138371E51", "versionEndExcluding": "9.0", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa." }, { "lang": "es", "value": "La rama maestra de LibTIFF presenta una lectura fuera de l\u00edmites en LZWDecode en libtiff/tif_lzw.c:619, permitiendo a atacantes causar una denegaci\u00f3n de servicio por medio de un archivo tiff dise\u00f1ado. Para usuarios que compilan libtiff a partir de las fuentes, la correcci\u00f3n est\u00e1 disponible con el commit b4e79bfa" } ], "id": "CVE-2022-1622", "lastModified": "2024-11-21T06:41:06.947", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 8.6, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": true } ], "cvssMetricV31": [ { "cvssData": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "exploitabilityScore": 1.8, "impactScore": 3.6, "source": "cve@gitlab.com", "type": "Secondary" }, { "cvssData": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "exploitabilityScore": 1.8, "impactScore": 3.6, "source": "nvd@nist.gov", "type": "Primary" } ] }, "published": "2022-05-11T15:15:09.237", "references": [ { "source": "cve@gitlab.com", "url": "http://seclists.org/fulldisclosure/2022/Oct/28" }, { "source": "cve@gitlab.com", "url": "http://seclists.org/fulldisclosure/2022/Oct/39" }, { "source": "cve@gitlab.com", "tags": [ "Third Party Advisory" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/41" }, { "source": "cve@gitlab.com", "tags": [ "Third Party Advisory" ], "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "source": "cve@gitlab.com", "tags": [ "Patch", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "source": "cve@gitlab.com", "tags": [ "Exploit", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "source": "cve@gitlab.com", "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "source": "cve@gitlab.com", "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "source": "cve@gitlab.com", "tags": [ "Third Party Advisory" ], "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213443" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213444" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213446" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213486" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213487" }, { "source": "cve@gitlab.com", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213488" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://seclists.org/fulldisclosure/2022/Oct/28" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://seclists.org/fulldisclosure/2022/Oct/39" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/41" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213443" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213444" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213446" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213486" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213487" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213488" } ], "sourceIdentifier": "cve@gitlab.com", "vulnStatus": "Modified", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-125" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
suse-su-2023:4736-1
Vulnerability from csaf_suse
Published
2023-12-12 14:41
Modified
2023-12-12 14:41
Summary
Security update for tiff
Notes
Title of the patch
Security update for tiff
Description of the patch
This update for tiff fixes the following issues:
- CVE-2023-2731: Fix null pointer deference in LZWDecode() (bsc#1211478).
- CVE-2023-1916: Fix out-of-bounds read in extractImageSection() (bsc#1210231).
- CVE-2023-26965: Fix heap-based use after free in loadImage() (bsc#1212398).
- CVE-2022-40090: Fix infinite loop in TIFFReadDirectory() (bsc#1214680).
Patchnames
SUSE-2023-4736,SUSE-SLE-SDK-12-SP5-2023-4736,SUSE-SLE-SERVER-12-SP5-2023-4736
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for tiff", "title": "Title of the patch" }, { "category": "description", "text": "This update for tiff fixes the following issues:\n\n- CVE-2023-2731: Fix null pointer deference in LZWDecode() (bsc#1211478).\n- CVE-2023-1916: Fix out-of-bounds read in extractImageSection() (bsc#1210231).\n- CVE-2023-26965: Fix heap-based use after free in loadImage() (bsc#1212398).\n- CVE-2022-40090: Fix infinite loop in TIFFReadDirectory() (bsc#1214680).\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-2023-4736,SUSE-SLE-SDK-12-SP5-2023-4736,SUSE-SLE-SERVER-12-SP5-2023-4736", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2023_4736-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2023:4736-1", "url": "https://www.suse.com/support/update/announcement/2023/suse-su-20234736-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2023:4736-1", "url": "https://lists.suse.com/pipermail/sle-updates/2023-December/033073.html" }, { "category": "self", "summary": "SUSE Bug 1199483", "url": "https://bugzilla.suse.com/1199483" }, { "category": "self", "summary": "SUSE Bug 1210231", "url": "https://bugzilla.suse.com/1210231" }, { "category": "self", "summary": "SUSE Bug 1211478", "url": "https://bugzilla.suse.com/1211478" }, { "category": "self", "summary": "SUSE Bug 1212398", "url": "https://bugzilla.suse.com/1212398" }, { "category": "self", "summary": "SUSE Bug 1214680", "url": "https://bugzilla.suse.com/1214680" }, { "category": "self", "summary": "SUSE CVE CVE-2022-1622 page", "url": "https://www.suse.com/security/cve/CVE-2022-1622/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-40090 page", "url": "https://www.suse.com/security/cve/CVE-2022-40090/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-1916 page", "url": "https://www.suse.com/security/cve/CVE-2023-1916/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-26965 page", "url": "https://www.suse.com/security/cve/CVE-2023-26965/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-2731 page", "url": "https://www.suse.com/security/cve/CVE-2023-2731/" } ], "title": "Security update for tiff", "tracking": { "current_release_date": "2023-12-12T14:41:31Z", "generator": { "date": "2023-12-12T14:41:31Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2023:4736-1", "initial_release_date": "2023-12-12T14:41:31Z", "revision_history": [ { "date": "2023-12-12T14:41:31Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.aarch64", "product": { "name": "libtiff-devel-4.0.9-44.74.1.aarch64", "product_id": "libtiff-devel-4.0.9-44.74.1.aarch64" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.aarch64", "product": { "name": "libtiff5-4.0.9-44.74.1.aarch64", "product_id": "libtiff5-4.0.9-44.74.1.aarch64" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.aarch64", "product": { "name": "tiff-4.0.9-44.74.1.aarch64", "product_id": "tiff-4.0.9-44.74.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-64bit-4.0.9-44.74.1.aarch64_ilp32", "product": { "name": "libtiff-devel-64bit-4.0.9-44.74.1.aarch64_ilp32", "product_id": "libtiff-devel-64bit-4.0.9-44.74.1.aarch64_ilp32" } }, { "category": "product_version", "name": "libtiff5-64bit-4.0.9-44.74.1.aarch64_ilp32", "product": { "name": "libtiff5-64bit-4.0.9-44.74.1.aarch64_ilp32", "product_id": "libtiff5-64bit-4.0.9-44.74.1.aarch64_ilp32" } } ], "category": "architecture", "name": "aarch64_ilp32" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.i586", "product": { "name": "libtiff-devel-4.0.9-44.74.1.i586", "product_id": "libtiff-devel-4.0.9-44.74.1.i586" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.i586", "product": { "name": "libtiff5-4.0.9-44.74.1.i586", "product_id": "libtiff5-4.0.9-44.74.1.i586" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.i586", "product": { "name": "tiff-4.0.9-44.74.1.i586", "product_id": "tiff-4.0.9-44.74.1.i586" } } ], "category": "architecture", "name": "i586" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.ppc64le", "product": { "name": "libtiff-devel-4.0.9-44.74.1.ppc64le", "product_id": "libtiff-devel-4.0.9-44.74.1.ppc64le" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.ppc64le", "product": { "name": "libtiff5-4.0.9-44.74.1.ppc64le", "product_id": "libtiff5-4.0.9-44.74.1.ppc64le" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.ppc64le", "product": { "name": "tiff-4.0.9-44.74.1.ppc64le", "product_id": "tiff-4.0.9-44.74.1.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.s390", "product": { "name": "libtiff-devel-4.0.9-44.74.1.s390", "product_id": "libtiff-devel-4.0.9-44.74.1.s390" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.s390", "product": { "name": "libtiff5-4.0.9-44.74.1.s390", "product_id": "libtiff5-4.0.9-44.74.1.s390" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.s390", "product": { "name": "tiff-4.0.9-44.74.1.s390", "product_id": "tiff-4.0.9-44.74.1.s390" } } ], "category": "architecture", "name": "s390" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.s390x", "product": { "name": "libtiff-devel-4.0.9-44.74.1.s390x", "product_id": "libtiff-devel-4.0.9-44.74.1.s390x" } }, { "category": "product_version", "name": "libtiff-devel-32bit-4.0.9-44.74.1.s390x", "product": { "name": "libtiff-devel-32bit-4.0.9-44.74.1.s390x", "product_id": "libtiff-devel-32bit-4.0.9-44.74.1.s390x" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.s390x", "product": { "name": "libtiff5-4.0.9-44.74.1.s390x", "product_id": "libtiff5-4.0.9-44.74.1.s390x" } }, { "category": "product_version", "name": "libtiff5-32bit-4.0.9-44.74.1.s390x", "product": { "name": "libtiff5-32bit-4.0.9-44.74.1.s390x", "product_id": "libtiff5-32bit-4.0.9-44.74.1.s390x" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.s390x", "product": { "name": "tiff-4.0.9-44.74.1.s390x", "product_id": "tiff-4.0.9-44.74.1.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-44.74.1.x86_64", "product": { "name": "libtiff-devel-4.0.9-44.74.1.x86_64", "product_id": "libtiff-devel-4.0.9-44.74.1.x86_64" } }, { "category": "product_version", "name": "libtiff-devel-32bit-4.0.9-44.74.1.x86_64", "product": { "name": "libtiff-devel-32bit-4.0.9-44.74.1.x86_64", "product_id": "libtiff-devel-32bit-4.0.9-44.74.1.x86_64" } }, { "category": "product_version", "name": "libtiff5-4.0.9-44.74.1.x86_64", "product": { "name": "libtiff5-4.0.9-44.74.1.x86_64", "product_id": "libtiff5-4.0.9-44.74.1.x86_64" } }, { "category": "product_version", "name": "libtiff5-32bit-4.0.9-44.74.1.x86_64", "product": { "name": "libtiff5-32bit-4.0.9-44.74.1.x86_64", "product_id": "libtiff5-32bit-4.0.9-44.74.1.x86_64" } }, { "category": "product_version", "name": "tiff-4.0.9-44.74.1.x86_64", "product": { "name": "tiff-4.0.9-44.74.1.x86_64", "product_id": "tiff-4.0.9-44.74.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Software Development Kit 12 SP5", "product": { "name": "SUSE Linux Enterprise Software Development Kit 12 SP5", "product_id": "SUSE Linux Enterprise Software Development Kit 12 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-sdk:12:sp5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 12 SP5", "product": { "name": "SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sles:12:sp5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:12:sp5" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-44.74.1.aarch64 as component of SUSE Linux Enterprise Software Development Kit 12 SP5", "product_id": "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-44.74.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Software Development Kit 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-44.74.1.ppc64le as component of SUSE Linux Enterprise Software Development Kit 12 SP5", "product_id": "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-44.74.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Software Development Kit 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Software Development Kit 12 SP5", "product_id": "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Software Development Kit 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Software Development Kit 12 SP5", "product_id": "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Software Development Kit 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.aarch64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64" }, "product_reference": "libtiff5-4.0.9-44.74.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.ppc64le as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-44.74.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x" }, "product_reference": "libtiff5-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64" }, "product_reference": "libtiff5-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x" }, "product_reference": "libtiff5-32bit-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.aarch64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64" }, "product_reference": "tiff-4.0.9-44.74.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.ppc64le as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le" }, "product_reference": "tiff-4.0.9-44.74.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x" }, "product_reference": "tiff-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server 12 SP5", "product_id": "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64" }, "product_reference": "tiff-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.aarch64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64" }, "product_reference": "libtiff5-4.0.9-44.74.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-44.74.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x" }, "product_reference": "libtiff5-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64" }, "product_reference": "libtiff5-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x" }, "product_reference": "libtiff5-32bit-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.aarch64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64" }, "product_reference": "tiff-4.0.9-44.74.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le" }, "product_reference": "tiff-4.0.9-44.74.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.s390x as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x" }, "product_reference": "tiff-4.0.9-44.74.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-44.74.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 12 SP5", "product_id": "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64" }, "product_reference": "tiff-4.0.9-44.74.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 12 SP5" } ] }, "vulnerabilities": [ { "cve": "CVE-2022-1622", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-1622" } ], "notes": [ { "category": "general", "text": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-1622", "url": "https://www.suse.com/security/cve/CVE-2022-1622" }, { "category": "external", "summary": "SUSE Bug 1199483 for CVE-2022-1622", "url": "https://bugzilla.suse.com/1199483" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-12T14:41:31Z", "details": "moderate" } ], "title": "CVE-2022-1622" }, { "cve": "CVE-2022-40090", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-40090" } ], "notes": [ { "category": "general", "text": "An issue was discovered in function TIFFReadDirectory libtiff before 4.4.0 allows attackers to cause a denial of service via crafted TIFF file.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-40090", "url": "https://www.suse.com/security/cve/CVE-2022-40090" }, { "category": "external", "summary": "SUSE Bug 1214680 for CVE-2022-40090", "url": "https://bugzilla.suse.com/1214680" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-12T14:41:31Z", "details": "moderate" } ], "title": "CVE-2022-40090" }, { "cve": "CVE-2023-1916", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-1916" } ], "notes": [ { "category": "general", "text": "A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited information disclosure. This issue affects libtiff versions 4.x.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-1916", "url": "https://www.suse.com/security/cve/CVE-2023-1916" }, { "category": "external", "summary": "SUSE Bug 1210231 for CVE-2023-1916", "url": "https://bugzilla.suse.com/1210231" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-12T14:41:31Z", "details": "moderate" } ], "title": "CVE-2023-1916" }, { "cve": "CVE-2023-26965", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-26965" } ], "notes": [ { "category": "general", "text": "loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-26965", "url": "https://www.suse.com/security/cve/CVE-2023-26965" }, { "category": "external", "summary": "SUSE Bug 1212398 for CVE-2023-26965", "url": "https://bugzilla.suse.com/1212398" }, { "category": "external", "summary": "SUSE Bug 1219472 for CVE-2023-26965", "url": "https://bugzilla.suse.com/1219472" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-12T14:41:31Z", "details": "important" } ], "title": "CVE-2023-26965" }, { "cve": "CVE-2023-2731", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-2731" } ], "notes": [ { "category": "general", "text": "A NULL pointer dereference flaw was found in Libtiff\u0027s LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF format file, resulting in a program crash or denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-2731", "url": "https://www.suse.com/security/cve/CVE-2023-2731" }, { "category": "external", "summary": "SUSE Bug 1211478 for CVE-2023-2731", "url": "https://bugzilla.suse.com/1211478" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-32bit-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:libtiff5-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Server for SAP Applications 12 SP5:tiff-4.0.9-44.74.1.x86_64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.aarch64", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.ppc64le", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.s390x", "SUSE Linux Enterprise Software Development Kit 12 SP5:libtiff-devel-4.0.9-44.74.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-12T14:41:31Z", "details": "moderate" } ], "title": "CVE-2023-2731" } ] }
suse-su-2023:4869-1
Vulnerability from csaf_suse
Published
2023-12-14 15:26
Modified
2023-12-14 15:26
Summary
Security update for tiff
Notes
Title of the patch
Security update for tiff
Description of the patch
This update for tiff fixes the following issues:
- CVE-2023-2731: Fix null pointer deference in LZWDecode() (bsc#1211478).
- CVE-2023-1916: Fix out-of-bounds read in extractImageSection() (bsc#1210231).
- CVE-2023-26965: Fix heap-based use after free in loadImage() (bsc#1212398).
- CVE-2022-40090: Fix infinite loop in TIFFReadDirectory() (bsc#1214680).
Patchnames
SUSE-2023-4869,SUSE-SLE-Micro-5.3-2023-4869,SUSE-SLE-Micro-5.4-2023-4869,SUSE-SLE-Micro-5.5-2023-4869,SUSE-SLE-Module-Basesystem-15-SP4-2023-4869,SUSE-SLE-Module-Basesystem-15-SP5-2023-4869,SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-4869,SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-4869,SUSE-SLE-Product-HPC-15-SP1-LTSS-2023-4869,SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-4869,SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4869,SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP1-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP1-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP2-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP3-2023-4869,SUSE-SUSE-MicroOS-5.2-2023-4869,SUSE-Storage-7.1-2023-4869,openSUSE-Leap-Micro-5.3-2023-4869,openSUSE-Leap-Micro-5.4-2023-4869,openSUSE-SLE-15.4-2023-4869,openSUSE-SLE-15.5-2023-4869
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for tiff", "title": "Title of the patch" }, { "category": "description", "text": "This update for tiff fixes the following issues:\n\n- CVE-2023-2731: Fix null pointer deference in LZWDecode() (bsc#1211478).\n- CVE-2023-1916: Fix out-of-bounds read in extractImageSection() (bsc#1210231).\n- CVE-2023-26965: Fix heap-based use after free in loadImage() (bsc#1212398).\n- CVE-2022-40090: Fix infinite loop in TIFFReadDirectory() (bsc#1214680).\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-2023-4869,SUSE-SLE-Micro-5.3-2023-4869,SUSE-SLE-Micro-5.4-2023-4869,SUSE-SLE-Micro-5.5-2023-4869,SUSE-SLE-Module-Basesystem-15-SP4-2023-4869,SUSE-SLE-Module-Basesystem-15-SP5-2023-4869,SUSE-SLE-Module-Packagehub-Subpackages-15-SP4-2023-4869,SUSE-SLE-Module-Packagehub-Subpackages-15-SP5-2023-4869,SUSE-SLE-Product-HPC-15-SP1-LTSS-2023-4869,SUSE-SLE-Product-HPC-15-SP2-LTSS-2023-4869,SUSE-SLE-Product-HPC-15-SP3-ESPOS-2023-4869,SUSE-SLE-Product-HPC-15-SP3-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP1-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP2-LTSS-2023-4869,SUSE-SLE-Product-SLES-15-SP3-LTSS-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP1-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP2-2023-4869,SUSE-SLE-Product-SLES_SAP-15-SP3-2023-4869,SUSE-SUSE-MicroOS-5.2-2023-4869,SUSE-Storage-7.1-2023-4869,openSUSE-Leap-Micro-5.3-2023-4869,openSUSE-Leap-Micro-5.4-2023-4869,openSUSE-SLE-15.4-2023-4869,openSUSE-SLE-15.5-2023-4869", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2023_4869-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2023:4869-1", "url": "https://www.suse.com/support/update/announcement/2023/suse-su-20234869-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2023:4869-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2023-December/017421.html" }, { "category": "self", "summary": "SUSE Bug 1199483", "url": "https://bugzilla.suse.com/1199483" }, { "category": "self", "summary": "SUSE Bug 1210231", "url": "https://bugzilla.suse.com/1210231" }, { "category": "self", "summary": "SUSE Bug 1211478", "url": "https://bugzilla.suse.com/1211478" }, { "category": "self", "summary": "SUSE Bug 1212398", "url": "https://bugzilla.suse.com/1212398" }, { "category": "self", "summary": "SUSE Bug 1214680", "url": "https://bugzilla.suse.com/1214680" }, { "category": "self", "summary": "SUSE CVE CVE-2022-1622 page", "url": "https://www.suse.com/security/cve/CVE-2022-1622/" }, { "category": "self", "summary": "SUSE CVE CVE-2022-40090 page", "url": "https://www.suse.com/security/cve/CVE-2022-40090/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-1916 page", "url": "https://www.suse.com/security/cve/CVE-2023-1916/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-26965 page", "url": "https://www.suse.com/security/cve/CVE-2023-26965/" }, { "category": "self", "summary": "SUSE CVE CVE-2023-2731 page", "url": "https://www.suse.com/security/cve/CVE-2023-2731/" } ], "title": "Security update for tiff", "tracking": { "current_release_date": "2023-12-14T15:26:46Z", "generator": { "date": "2023-12-14T15:26:46Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2023:4869-1", "initial_release_date": "2023-12-14T15:26:46Z", "revision_history": [ { "date": "2023-12-14T15:26:46Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "product": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "product_id": "libtiff-devel-4.0.9-150000.45.35.1.aarch64" } }, { "category": "product_version", "name": "libtiff5-4.0.9-150000.45.35.1.aarch64", "product": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64", "product_id": "libtiff5-4.0.9-150000.45.35.1.aarch64" } }, { "category": "product_version", "name": "tiff-4.0.9-150000.45.35.1.aarch64", "product": { "name": "tiff-4.0.9-150000.45.35.1.aarch64", "product_id": "tiff-4.0.9-150000.45.35.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-64bit-4.0.9-150000.45.35.1.aarch64_ilp32", "product": { "name": "libtiff-devel-64bit-4.0.9-150000.45.35.1.aarch64_ilp32", "product_id": "libtiff-devel-64bit-4.0.9-150000.45.35.1.aarch64_ilp32" } }, { "category": "product_version", "name": "libtiff5-64bit-4.0.9-150000.45.35.1.aarch64_ilp32", "product": { "name": "libtiff5-64bit-4.0.9-150000.45.35.1.aarch64_ilp32", "product_id": "libtiff5-64bit-4.0.9-150000.45.35.1.aarch64_ilp32" } } ], "category": "architecture", "name": "aarch64_ilp32" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-150000.45.35.1.i586", "product": { "name": "libtiff-devel-4.0.9-150000.45.35.1.i586", "product_id": "libtiff-devel-4.0.9-150000.45.35.1.i586" } }, { "category": "product_version", "name": "libtiff5-4.0.9-150000.45.35.1.i586", "product": { "name": "libtiff5-4.0.9-150000.45.35.1.i586", "product_id": "libtiff5-4.0.9-150000.45.35.1.i586" } }, { "category": "product_version", "name": "tiff-4.0.9-150000.45.35.1.i586", "product": { "name": "tiff-4.0.9-150000.45.35.1.i586", "product_id": "tiff-4.0.9-150000.45.35.1.i586" } } ], "category": "architecture", "name": "i586" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "product": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "product_id": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le" } }, { "category": "product_version", "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "product": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "product_id": "libtiff5-4.0.9-150000.45.35.1.ppc64le" } }, { "category": "product_version", "name": "tiff-4.0.9-150000.45.35.1.ppc64le", "product": { "name": "tiff-4.0.9-150000.45.35.1.ppc64le", "product_id": "tiff-4.0.9-150000.45.35.1.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "product": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "product_id": "libtiff-devel-4.0.9-150000.45.35.1.s390x" } }, { "category": "product_version", "name": "libtiff5-4.0.9-150000.45.35.1.s390x", "product": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x", "product_id": "libtiff5-4.0.9-150000.45.35.1.s390x" } }, { "category": "product_version", "name": "tiff-4.0.9-150000.45.35.1.s390x", "product": { "name": "tiff-4.0.9-150000.45.35.1.s390x", "product_id": "tiff-4.0.9-150000.45.35.1.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "product": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "product_id": "libtiff-devel-4.0.9-150000.45.35.1.x86_64" } }, { "category": "product_version", "name": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "product": { "name": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "product_id": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64" } }, { "category": "product_version", "name": "libtiff5-4.0.9-150000.45.35.1.x86_64", "product": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64", "product_id": "libtiff5-4.0.9-150000.45.35.1.x86_64" } }, { "category": "product_version", "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "product": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "product_id": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" } }, { "category": "product_version", "name": "tiff-4.0.9-150000.45.35.1.x86_64", "product": { "name": "tiff-4.0.9-150000.45.35.1.x86_64", "product_id": "tiff-4.0.9-150000.45.35.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux Enterprise Micro 5.3", "product": { "name": "SUSE Linux Enterprise Micro 5.3", "product_id": "SUSE Linux Enterprise Micro 5.3", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-micro:5.3" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Micro 5.4", "product": { "name": "SUSE Linux Enterprise Micro 5.4", "product_id": "SUSE Linux Enterprise Micro 5.4", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-micro:5.4" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Micro 5.5", "product": { "name": "SUSE Linux Enterprise Micro 5.5", "product_id": "SUSE Linux Enterprise Micro 5.5", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-micro:5.5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Module for Basesystem 15 SP4", "product": { "name": "SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-module-basesystem:15:sp4" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Module for Basesystem 15 SP5", "product": { "name": "SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:sle-module-basesystem:15:sp5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Module for Package Hub 15 SP4", "product": { "name": "SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_identification_helper": { "cpe": "cpe:/o:suse:packagehub:15:sp4" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Module for Package Hub 15 SP5", "product": { "name": "SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_identification_helper": { "cpe": "cpe:/o:suse:packagehub:15:sp5" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product": { "name": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sle_hpc-ltss:15:sp1" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product": { "name": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sle_hpc-ltss:15:sp2" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product": { "name": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_identification_helper": { "cpe": "cpe:/o:suse:sle_hpc-espos:15:sp3" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product": { "name": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sle_hpc-ltss:15:sp3" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 15 SP1-LTSS", "product": { "name": "SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sles-ltss:15:sp1" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 15 SP2-LTSS", "product": { "name": "SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sles-ltss:15:sp2" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server 15 SP3-LTSS", "product": { "name": "SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS", "product_identification_helper": { "cpe": "cpe:/o:suse:sles-ltss:15:sp3" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:15:sp1" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:15:sp2" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product": { "name": "SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_identification_helper": { "cpe": "cpe:/o:suse:sles_sap:15:sp3" } } }, { "category": "product_name", "name": "SUSE Linux Enterprise Micro 5.2", "product": { "name": "SUSE Linux Enterprise Micro 5.2", "product_id": "SUSE Linux Enterprise Micro 5.2", "product_identification_helper": { "cpe": "cpe:/o:suse:suse-microos:5.2" } } }, { "category": "product_name", "name": "SUSE Enterprise Storage 7.1", "product": { "name": "SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1", "product_identification_helper": { "cpe": "cpe:/o:suse:ses:7.1" } } }, { "category": "product_name", "name": "openSUSE Leap Micro 5.3", "product": { "name": "openSUSE Leap Micro 5.3", "product_id": "openSUSE Leap Micro 5.3", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap-micro:5.3" } } }, { "category": "product_name", "name": "openSUSE Leap Micro 5.4", "product": { "name": "openSUSE Leap Micro 5.4", "product_id": "openSUSE Leap Micro 5.4", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap-micro:5.4" } } }, { "category": "product_name", "name": "openSUSE Leap 15.4", "product": { "name": "openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap:15.4" } } }, { "category": "product_name", "name": "openSUSE Leap 15.5", "product": { "name": "openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5", "product_identification_helper": { "cpe": "cpe:/o:opensuse:leap:15.5" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Micro 5.3", "product_id": "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Micro 5.3", "product_id": "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Micro 5.3", "product_id": "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Micro 5.4", "product_id": "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Micro 5.4", "product_id": "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Micro 5.4", "product_id": "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Micro 5.5", "product_id": "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Micro 5.5", "product_id": "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Micro 5.5", "product_id": "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP4", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Basesystem 15 SP5", "product_id": "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Basesystem 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "tiff-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x" }, "product_reference": "tiff-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Package Hub 15 SP4", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "tiff-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x" }, "product_reference": "tiff-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Module for Package Hub 15 SP5", "product_id": "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Module for Package Hub 15 SP5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP1-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP1-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP2-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP2-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server 15 SP3-LTSS", "product_id": "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server 15 SP3-LTSS" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP1", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP2", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Server for SAP Applications 15 SP3", "product_id": "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Server for SAP Applications 15 SP3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Linux Enterprise Micro 5.2", "product_id": "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of SUSE Linux Enterprise Micro 5.2", "product_id": "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Linux Enterprise Micro 5.2", "product_id": "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Linux Enterprise Micro 5.2" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 7.1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 7.1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 7.1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 7.1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of SUSE Enterprise Storage 7.1", "product_id": "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 7.1" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap Micro 5.3", "product_id": "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap Micro 5.3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap Micro 5.3", "product_id": "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap Micro 5.3" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap Micro 5.4", "product_id": "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap Micro 5.4", "product_id": "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap Micro 5.4", "product_id": "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap Micro 5.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "tiff-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x" }, "product_reference": "tiff-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.4", "product_id": "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.4" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.aarch64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.aarch64", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.ppc64le as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le" }, "product_reference": "tiff-4.0.9-150000.45.35.1.ppc64le", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.s390x as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x" }, "product_reference": "tiff-4.0.9-150000.45.35.1.s390x", "relates_to_product_reference": "openSUSE Leap 15.5" }, { "category": "default_component_of", "full_product_name": { "name": "tiff-4.0.9-150000.45.35.1.x86_64 as component of openSUSE Leap 15.5", "product_id": "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64" }, "product_reference": "tiff-4.0.9-150000.45.35.1.x86_64", "relates_to_product_reference": "openSUSE Leap 15.5" } ] }, "vulnerabilities": [ { "cve": "CVE-2022-1622", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-1622" } ], "notes": [ { "category": "general", "text": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-1622", "url": "https://www.suse.com/security/cve/CVE-2022-1622" }, { "category": "external", "summary": "SUSE Bug 1199483 for CVE-2022-1622", "url": "https://bugzilla.suse.com/1199483" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-14T15:26:46Z", "details": "moderate" } ], "title": "CVE-2022-1622" }, { "cve": "CVE-2022-40090", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2022-40090" } ], "notes": [ { "category": "general", "text": "An issue was discovered in function TIFFReadDirectory libtiff before 4.4.0 allows attackers to cause a denial of service via crafted TIFF file.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2022-40090", "url": "https://www.suse.com/security/cve/CVE-2022-40090" }, { "category": "external", "summary": "SUSE Bug 1214680 for CVE-2022-40090", "url": "https://bugzilla.suse.com/1214680" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-14T15:26:46Z", "details": "moderate" } ], "title": "CVE-2022-40090" }, { "cve": "CVE-2023-1916", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-1916" } ], "notes": [ { "category": "general", "text": "A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited information disclosure. This issue affects libtiff versions 4.x.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-1916", "url": "https://www.suse.com/security/cve/CVE-2023-1916" }, { "category": "external", "summary": "SUSE Bug 1210231 for CVE-2023-1916", "url": "https://bugzilla.suse.com/1210231" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-14T15:26:46Z", "details": "moderate" } ], "title": "CVE-2023-1916" }, { "cve": "CVE-2023-26965", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-26965" } ], "notes": [ { "category": "general", "text": "loadImage() in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based use after free via a crafted TIFF image.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-26965", "url": "https://www.suse.com/security/cve/CVE-2023-26965" }, { "category": "external", "summary": "SUSE Bug 1212398 for CVE-2023-26965", "url": "https://bugzilla.suse.com/1212398" }, { "category": "external", "summary": "SUSE Bug 1219472 for CVE-2023-26965", "url": "https://bugzilla.suse.com/1219472" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.1, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H", "version": "3.1" }, "products": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-14T15:26:46Z", "details": "important" } ], "title": "CVE-2023-26965" }, { "cve": "CVE-2023-2731", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2023-2731" } ], "notes": [ { "category": "general", "text": "A NULL pointer dereference flaw was found in Libtiff\u0027s LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF format file, resulting in a program crash or denial of service.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2023-2731", "url": "https://www.suse.com/security/cve/CVE-2023-2731" }, { "category": "external", "summary": "SUSE Bug 1211478 for CVE-2023-2731", "url": "https://bugzilla.suse.com/1211478" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Enterprise Storage 7.1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Micro 5.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP4:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Basesystem 15 SP5:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP4:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Module for Package Hub 15 SP5:tiff-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP1-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP2-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.aarch64", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.s390x", "SUSE Linux Enterprise Server 15 SP3-LTSS:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP1:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP2:libtiff5-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.ppc64le", "SUSE Linux Enterprise Server for SAP Applications 15 SP3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.4:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff-devel-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-32bit-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.ppc64le", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.s390x", "openSUSE Leap 15.5:tiff-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.3:libtiff5-4.0.9-150000.45.35.1.x86_64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.aarch64", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.s390x", "openSUSE Leap Micro 5.4:libtiff5-4.0.9-150000.45.35.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2023-12-14T15:26:46Z", "details": "moderate" } ], "title": "CVE-2023-2731" } ] }
gsd-2022-1622
Vulnerability from gsd
Modified
2023-12-13 01:19
Details
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
Aliases
Aliases
{ "GSD": { "alias": "CVE-2022-1622", "description": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "id": "GSD-2022-1622", "references": [ "https://www.suse.com/security/cve/CVE-2022-1622.html", "https://advisories.mageia.org/CVE-2022-1622.html", "https://www.debian.org/security/2023/dsa-5333" ] }, "gsd": { "metadata": { "exploitCode": "unknown", "remediation": "unknown", "reportConfidence": "confirmed", "type": "vulnerability" }, "osvSchema": { "aliases": [ "CVE-2022-1622" ], "details": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "id": "GSD-2022-1622", "modified": "2023-12-13T01:19:27.658847Z", "schema_version": "1.4.0" } }, "namespaces": { "cve.org": { "CVE_data_meta": { "ASSIGNER": "cve@gitlab.com", "ID": "CVE-2022-1622", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "libtiff", "version": { "version_data": [ { "version_value": "3079627ea0dee150e6a208cec8381de611bb842b" } ] } } ] }, "vendor_name": "libtiff" } ] } }, "credit": [ { "lang": "eng", "value": "wangdw.augustus@gmail.com" } ], "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa." } ] }, "impact": { "cvss": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 5.4, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" } }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "Out-of-bounds read in libtiff" } ] } ] }, "references": { "reference_data": [ { "name": "https://gitlab.com/libtiff/libtiff/-/issues/410", "refsource": "MISC", "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "name": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a", "refsource": "MISC", "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "name": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json", "refsource": "CONFIRM", "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "name": "https://security.netapp.com/advisory/ntap-20220616-0005/", "refsource": "CONFIRM", "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "name": "FEDORA-2022-ea3ebeff3d", "refsource": "FEDORA", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "name": "FEDORA-2022-e9fe21d102", "refsource": "FEDORA", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "name": "https://support.apple.com/kb/HT213443", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213443" }, { "name": "https://support.apple.com/kb/HT213444", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213444" }, { "name": "https://support.apple.com/kb/HT213446", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213446" }, { "name": "https://support.apple.com/kb/HT213488", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213488" }, { "name": "https://support.apple.com/kb/HT213486", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213486" }, { "name": "https://support.apple.com/kb/HT213487", "refsource": "CONFIRM", "url": "https://support.apple.com/kb/HT213487" }, { "name": "20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13", "refsource": "FULLDISC", "url": "http://seclists.org/fulldisclosure/2022/Oct/41" } ] } }, "gitlab.com": { "advisories": [ { "affected_range": "=4.3.0", "affected_versions": "Version 4.3.0", "cvss_v2": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "cvss_v3": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "cwe_ids": [ "CWE-1035", "CWE-125", "CWE-937" ], "date": "2022-11-07", "description": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "fixed_versions": [ "4.4.0" ], "identifier": "CVE-2022-1622", "identifiers": [ "CVE-2022-1622" ], "not_impacted": "All versions before 4.3.0, all versions after 4.3.0", "package_slug": "conan/libtiff", "pubdate": "2022-05-11", "solution": "Upgrade to version 4.4.0 or above.", "title": "Out-of-bounds Read", "urls": [ "https://nvd.nist.gov/vuln/detail/CVE-2022-1622", "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a", "https://gitlab.com/libtiff/libtiff/-/issues/410", "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" ], "uuid": "ff192c7b-1eb7-49ac-965c-f2c27b5f27ab" } ] }, "nvd.nist.gov": { "configurations": { "CVE_data_version": "4.0", "nodes": [ { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:a:libtiff:libtiff:4.3.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndExcluding": "16.0", "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndExcluding": "11.7", "versionStartIncluding": "11.0", "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndExcluding": "12.6", "versionStartIncluding": "12.0", "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndExcluding": "9.0", "vulnerable": true }, { "cpe23Uri": "cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*", "cpe_name": [], "versionEndExcluding": "16.0", "vulnerable": true } ], "operator": "OR" } ] }, "cve": { "CVE_data_meta": { "ASSIGNER": "cve@gitlab.com", "ID": "CVE-2022-1622" }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "en", "value": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "en", "value": "CWE-125" } ] } ] }, "references": { "reference_data": [ { "name": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a", "refsource": "MISC", "tags": [ "Patch", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "name": "https://gitlab.com/libtiff/libtiff/-/issues/410", "refsource": "MISC", "tags": [ "Exploit", "Third Party Advisory" ], "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "name": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json", "refsource": "CONFIRM", "tags": [ "Third Party Advisory" ], "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "name": "https://security.netapp.com/advisory/ntap-20220616-0005/", "refsource": "CONFIRM", "tags": [ "Third Party Advisory" ], "url": "https://security.netapp.com/advisory/ntap-20220616-0005/" }, { "name": "FEDORA-2022-ea3ebeff3d", "refsource": "FEDORA", "tags": [ "Mailing List", "Third Party Advisory" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK/" }, { "name": "FEDORA-2022-e9fe21d102", "refsource": "FEDORA", "tags": [ "Mailing List", "Third Party Advisory" ], "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3/" }, { "name": "https://support.apple.com/kb/HT213488", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213488" }, { "name": "https://support.apple.com/kb/HT213446", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213446" }, { "name": "https://support.apple.com/kb/HT213444", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213444" }, { "name": "https://support.apple.com/kb/HT213443", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213443" }, { "name": "https://support.apple.com/kb/HT213486", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213486" }, { "name": "https://support.apple.com/kb/HT213487", "refsource": "CONFIRM", "tags": [ "Release Notes", "Third Party Advisory" ], "url": "https://support.apple.com/kb/HT213487" }, { "name": "20221030 APPLE-SA-2022-10-27-5 Additional information for APPLE-SA-2022-10-24-2 macOS Ventura 13", "refsource": "FULLDISC", "tags": [ "Third Party Advisory" ], "url": "http://seclists.org/fulldisclosure/2022/Oct/41" } ] } }, "impact": { "baseMetricV2": { "acInsufInfo": false, "cvssV2": { "accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 8.6, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "severity": "MEDIUM", "userInteractionRequired": true }, "baseMetricV3": { "cvssV3": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 5.5, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "REQUIRED", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "version": "3.1" }, "exploitabilityScore": 1.8, "impactScore": 3.6 } }, "lastModifiedDate": "2022-11-07T20:52Z", "publishedDate": "2022-05-11T15:15Z" } } }
wid-sec-w-2022-1846
Vulnerability from csaf_certbund
Published
2022-10-24 22:00
Modified
2024-09-16 22:00
Summary
Apple macOS: Mehrere Schwachstellen
Notes
Das BSI ist als Anbieter für die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch dafür verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgfältig im Einzelfall zu prüfen.
Produktbeschreibung
Apple macOS ist ein Betriebssystem, das auf FreeBSD und Mach basiert.
Angriff
Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen, beliebigen Programmcode auszuführen, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuführen, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen.
Betroffene Betriebssysteme
- MacOS X
{ "document": { "aggregate_severity": { "text": "hoch" }, "category": "csaf_base", "csaf_version": "2.0", "distribution": { "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "de-DE", "notes": [ { "category": "legal_disclaimer", "text": "Das BSI ist als Anbieter f\u00fcr die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch daf\u00fcr verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgf\u00e4ltig im Einzelfall zu pr\u00fcfen." }, { "category": "description", "text": "Apple macOS ist ein Betriebssystem, das auf FreeBSD und Mach basiert.", "title": "Produktbeschreibung" }, { "category": "summary", "text": "Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Apple macOS ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen.", "title": "Angriff" }, { "category": "general", "text": "- MacOS X", "title": "Betroffene Betriebssysteme" } ], "publisher": { "category": "other", "contact_details": "csaf-provider@cert-bund.de", "name": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik", "namespace": "https://www.bsi.bund.de" }, "references": [ { "category": "self", "summary": "WID-SEC-W-2022-1846 - CSAF Version", "url": "https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-1846.json" }, { "category": "self", "summary": "WID-SEC-2022-1846 - Portal Version", "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-1846" }, { "category": "external", "summary": "Apple Security Advisory HT213488 vom 2022-10-24", "url": "https://support.apple.com/en-us/HT213488" }, { "category": "external", "summary": "Apple Security Advisory HT213493 vom 2022-10-24", "url": "https://support.apple.com/en-us/HT213493" }, { "category": "external", "summary": "Apple Security Advisory HT213494 vom 2022-10-24", "url": "https://support.apple.com/en-us/HT213494" } ], "source_lang": "en-US", "title": "Apple macOS: Mehrere Schwachstellen", "tracking": { "current_release_date": "2024-09-16T22:00:00.000+00:00", "generator": { "date": "2024-09-17T08:17:03.625+00:00", "engine": { "name": "BSI-WID", "version": "1.3.6" } }, "id": "WID-SEC-W-2022-1846", "initial_release_date": "2022-10-24T22:00:00.000+00:00", "revision_history": [ { "date": "2022-10-24T22:00:00.000+00:00", "number": "1", "summary": "Initiale Fassung" }, { "date": "2022-10-27T22:00:00.000+00:00", "number": "2", "summary": "CVEs erg\u00e4nzt" }, { "date": "2023-06-27T22:00:00.000+00:00", "number": "3", "summary": "CVE\u0027s erg\u00e4nzt" }, { "date": "2023-08-14T22:00:00.000+00:00", "number": "4", "summary": "CVE Nummern erg\u00e4nzt" }, { "date": "2024-06-10T22:00:00.000+00:00", "number": "5", "summary": "CVE\u0027s erg\u00e4nzt" }, { "date": "2024-09-16T22:00:00.000+00:00", "number": "6", "summary": "CVE-2022-46723 erg\u00e4nzt" } ], "status": "final", "version": "6" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "Ventura_13", "product": { "name": "Apple macOS Ventura_13", "product_id": "T025102", "product_identification_helper": { "cpe": "cpe:/o:apple:mac_os:ventura_13" } } }, { "category": "product_version", "name": "Big Sur 11.7.1", "product": { "name": "Apple macOS Big Sur 11.7.1", "product_id": "T025103", "product_identification_helper": { "cpe": "cpe:/o:apple:mac_os:big_sur_11.7.1" } } }, { "category": "product_version", "name": "Monterey 12.6.1", "product": { "name": "Apple macOS Monterey 12.6.1", "product_id": "T025104", "product_identification_helper": { "cpe": "cpe:/o:apple:mac_os:monterey_12.6.1" } } } ], "category": "product_name", "name": "macOS" } ], "category": "vendor", "name": "Apple" } ] }, "vulnerabilities": [ { "cve": "CVE-2021-36690", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2021-36690" }, { "cve": "CVE-2021-39537", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2021-39537" }, { "cve": "CVE-2022-0261", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0261" }, { "cve": "CVE-2022-0318", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0318" }, { "cve": "CVE-2022-0319", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0319" }, { "cve": "CVE-2022-0351", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0351" }, { "cve": "CVE-2022-0359", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0359" }, { "cve": "CVE-2022-0361", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0361" }, { "cve": "CVE-2022-0368", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0368" }, { "cve": "CVE-2022-0392", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0392" }, { "cve": "CVE-2022-0554", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0554" }, { "cve": "CVE-2022-0572", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0572" }, { "cve": "CVE-2022-0629", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0629" }, { "cve": "CVE-2022-0685", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0685" }, { "cve": "CVE-2022-0696", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0696" }, { "cve": "CVE-2022-0714", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0714" }, { "cve": "CVE-2022-0729", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0729" }, { "cve": "CVE-2022-0943", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-0943" }, { "cve": "CVE-2022-1381", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1381" }, { "cve": "CVE-2022-1420", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1420" }, { "cve": "CVE-2022-1616", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1616" }, { "cve": "CVE-2022-1619", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1619" }, { "cve": "CVE-2022-1620", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1620" }, { "cve": "CVE-2022-1621", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1621" }, { "cve": "CVE-2022-1622", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1622" }, { "cve": "CVE-2022-1629", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1629" }, { "cve": "CVE-2022-1674", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1674" }, { "cve": "CVE-2022-1720", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1720" }, { "cve": "CVE-2022-1725", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1725" }, { "cve": "CVE-2022-1733", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1733" }, { "cve": "CVE-2022-1735", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1735" }, { "cve": "CVE-2022-1769", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1769" }, { "cve": "CVE-2022-1851", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1851" }, { "cve": "CVE-2022-1897", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1897" }, { "cve": "CVE-2022-1898", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1898" }, { "cve": "CVE-2022-1927", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1927" }, { "cve": "CVE-2022-1942", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1942" }, { "cve": "CVE-2022-1968", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-1968" }, { "cve": "CVE-2022-2000", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-2000" }, { "cve": "CVE-2022-2042", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-2042" }, { "cve": "CVE-2022-2124", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-2124" }, { "cve": "CVE-2022-2125", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-2125" }, { "cve": "CVE-2022-2126", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-2126" }, { "cve": "CVE-2022-26699", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-26699" }, { "cve": "CVE-2022-26730", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-26730" }, { "cve": "CVE-2022-28739", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-28739" }, { "cve": "CVE-2022-29458", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-29458" }, { "cve": "CVE-2022-32205", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32205" }, { "cve": "CVE-2022-32206", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32206" }, { "cve": "CVE-2022-32207", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32207" }, { "cve": "CVE-2022-32208", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32208" }, { "cve": "CVE-2022-32827", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32827" }, { "cve": "CVE-2022-32835", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32835" }, { "cve": "CVE-2022-32858", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32858" }, { "cve": "CVE-2022-32859", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32859" }, { "cve": "CVE-2022-32862", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32862" }, { "cve": "CVE-2022-32864", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32864" }, { "cve": "CVE-2022-32865", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32865" }, { "cve": "CVE-2022-32866", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32866" }, { "cve": "CVE-2022-32867", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32867" }, { "cve": "CVE-2022-32870", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32870" }, { "cve": "CVE-2022-32875", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32875" }, { "cve": "CVE-2022-32876", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32876" }, { "cve": "CVE-2022-32877", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32877" }, { "cve": "CVE-2022-32879", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32879" }, { "cve": "CVE-2022-32881", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32881" }, { "cve": "CVE-2022-32883", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32883" }, { "cve": "CVE-2022-32886", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32886" }, { "cve": "CVE-2022-32888", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32888" }, { "cve": "CVE-2022-32890", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32890" }, { "cve": "CVE-2022-32892", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32892" }, { "cve": "CVE-2022-32895", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32895" }, { "cve": "CVE-2022-32898", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32898" }, { "cve": "CVE-2022-32899", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32899" }, { "cve": "CVE-2022-32902", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32902" }, { "cve": "CVE-2022-32903", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32903" }, { "cve": "CVE-2022-32904", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32904" }, { "cve": "CVE-2022-32905", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32905" }, { "cve": "CVE-2022-32907", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32907" }, { "cve": "CVE-2022-32908", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32908" }, { "cve": "CVE-2022-32909", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32909" }, { "cve": "CVE-2022-32911", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32911" }, { "cve": "CVE-2022-32912", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32912" }, { "cve": "CVE-2022-32913", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32913" }, { "cve": "CVE-2022-32914", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32914" }, { "cve": "CVE-2022-32915", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32915" }, { "cve": "CVE-2022-32918", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32918" }, { "cve": "CVE-2022-32922", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32922" }, { "cve": "CVE-2022-32924", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32924" }, { "cve": "CVE-2022-32928", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32928" }, { "cve": "CVE-2022-32934", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32934" }, { "cve": "CVE-2022-32936", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32936" }, { "cve": "CVE-2022-32938", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32938" }, { "cve": "CVE-2022-32940", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32940" }, { "cve": "CVE-2022-32947", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-32947" }, { "cve": "CVE-2022-42788", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42788" }, { "cve": "CVE-2022-42789", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42789" }, { "cve": "CVE-2022-42790", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42790" }, { "cve": "CVE-2022-42791", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42791" }, { "cve": "CVE-2022-42793", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42793" }, { "cve": "CVE-2022-42795", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42795" }, { "cve": "CVE-2022-42796", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42796" }, { "cve": "CVE-2022-42799", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42799" }, { "cve": "CVE-2022-42806", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42806" }, { "cve": "CVE-2022-42808", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42808" }, { "cve": "CVE-2022-42809", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42809" }, { "cve": "CVE-2022-42811", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42811" }, { "cve": "CVE-2022-42813", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42813" }, { "cve": "CVE-2022-42814", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42814" }, { "cve": "CVE-2022-42815", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42815" }, { "cve": "CVE-2022-42818", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42818" }, { "cve": "CVE-2022-42819", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42819" }, { "cve": "CVE-2022-42820", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42820" }, { "cve": "CVE-2022-42823", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42823" }, { "cve": "CVE-2022-42824", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42824" }, { "cve": "CVE-2022-42825", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42825" }, { "cve": "CVE-2022-42828", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42828" }, { "cve": "CVE-2022-42829", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42829" }, { "cve": "CVE-2022-42830", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42830" }, { "cve": "CVE-2022-42831", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42831" }, { "cve": "CVE-2022-42832", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42832" }, { "cve": "CVE-2022-42833", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42833" }, { "cve": "CVE-2022-42834", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42834" }, { "cve": "CVE-2022-42838", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42838" }, { "cve": "CVE-2022-42860", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-42860" }, { "cve": "CVE-2022-46709", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46709" }, { "cve": "CVE-2022-46712", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46712" }, { "cve": "CVE-2022-46713", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46713" }, { "cve": "CVE-2022-46721", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46721" }, { "cve": "CVE-2022-46722", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46722" }, { "cve": "CVE-2022-46723", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-46723" }, { "cve": "CVE-2022-47915", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-47915" }, { "cve": "CVE-2022-47965", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-47965" }, { "cve": "CVE-2022-48504", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-48504" }, { "cve": "CVE-2022-48505", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-48505" }, { "cve": "CVE-2022-48577", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-48577" }, { "cve": "CVE-2022-48683", "notes": [ { "category": "description", "text": "In Apple macOS existieren mehrere Schwachstellen. Diese sind auf Fehler in den Komponenten \"Accelerate Framework\", \"Apple Neural Engine\", \"AppleAVD\", \"AppleMobileFileIntegrity\", \"ATS\", \"Audio\", \"AVEVideoEncoder\", \"Calendar\", \"CFNetwork\", \"ColorSync\", \"Crash Reporter\", \"curl\", \"Directory Utility\", \"DriverKit\", \"Exchange\", \"Find My\", \"Finder\", \"GPU Drivers\", \"Grapher\", \"Image Processing\", \"ImageIO\", \"Intel Graphics Driver\", \"IOHIDFamily\", \"IOKit\", \"Kernel\", \"Mail\", \"Maps\", MediaLibrary\", \"ncurses\", \"Notes\", \"Notifications\", \"PackageKit\", \"Photos\", \"ppp\", \"Ruby\", \"Sandbox\", \"Security\", \"Shortcuts\", \"Sidecar\", \"Siri\", \"SMB\", \"Software Update\", \"SQLite\", \"Vim\", \"Weather\", \"WebKit\", \"WebKit PDF\" sowie \"WebKit Sandboxing\". Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuf\u00fchren, beliebigen Programmcode auszuf\u00fchren, seine Privilegien zu erweitern, einen Denial of Service Zustand herbeizuf\u00fchren, Dateien zu manipulieren, Informationen offenzulegen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich." } ], "product_status": { "known_affected": [ "T025103", "T025102", "T025104" ] }, "release_date": "2022-10-24T22:00:00.000+00:00", "title": "CVE-2022-48683" } ] }
wid-sec-w-2024-3377
Vulnerability from csaf_certbund
Published
2024-11-07 23:00
Modified
2025-08-04 22:00
Summary
Dell PowerProtect Data Domain: Mehrere Schwachstellen
Notes
Das BSI ist als Anbieter für die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch dafür verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgfältig im Einzelfall zu prüfen.
Produktbeschreibung
Dell PowerProtect Data Domain Appliances sind speziell für Backup und Daten-Deduplizierung ausgelegte Systeme.
Angriff
Ein lokaler Angreifer kann mehrere Schwachstellen in Dell PowerProtect Data Domain ausnutzen, um seine Privilegien zu erhöhen, Informationen offenzulegen und um nicht näher beschriebene Auswirkungen zu erzielen.
Betroffene Betriebssysteme
- Sonstiges
{ "document": { "aggregate_severity": { "text": "mittel" }, "category": "csaf_base", "csaf_version": "2.0", "distribution": { "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "de-DE", "notes": [ { "category": "legal_disclaimer", "text": "Das BSI ist als Anbieter f\u00fcr die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch daf\u00fcr verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgf\u00e4ltig im Einzelfall zu pr\u00fcfen." }, { "category": "description", "text": "Dell PowerProtect Data Domain Appliances sind speziell f\u00fcr Backup und Daten-Deduplizierung ausgelegte Systeme.", "title": "Produktbeschreibung" }, { "category": "summary", "text": "Ein lokaler Angreifer kann mehrere Schwachstellen in Dell PowerProtect Data Domain ausnutzen, um seine Privilegien zu erh\u00f6hen, Informationen offenzulegen und um nicht n\u00e4her beschriebene Auswirkungen zu erzielen.", "title": "Angriff" }, { "category": "general", "text": "- Sonstiges", "title": "Betroffene Betriebssysteme" } ], "publisher": { "category": "other", "contact_details": "csaf-provider@cert-bund.de", "name": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik", "namespace": "https://www.bsi.bund.de" }, "references": [ { "category": "self", "summary": "WID-SEC-W-2024-3377 - CSAF Version", "url": "https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-3377.json" }, { "category": "self", "summary": "WID-SEC-2024-3377 - Portal Version", "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-3377" }, { "category": "external", "summary": "Dell Security Update", "url": "https://www.dell.com/support/kbdoc/de-de/000245360/dsa-2024-424-security-update-for-dell-pdsa-2024-424-security-update-for-dell-powerprotect-dd-vulnerabilityowerprotect-dd-vulnerability" }, { "category": "external", "summary": "Security Update for Dell PowerProtect Data Domain", "url": "https://www.dell.com/support/kbdoc/en-us/000348708/dsa-2025-159-security-update-for-dell-powerprotect-data-domain-multiple-vulnerabilities" } ], "source_lang": "en-US", "title": "Dell PowerProtect Data Domain: Mehrere Schwachstellen", "tracking": { "current_release_date": "2025-08-04T22:00:00.000+00:00", "generator": { "date": "2025-08-05T07:21:01.974+00:00", "engine": { "name": "BSI-WID", "version": "1.4.0" } }, "id": "WID-SEC-W-2024-3377", "initial_release_date": "2024-11-07T23:00:00.000+00:00", "revision_history": [ { "date": "2024-11-07T23:00:00.000+00:00", "number": "1", "summary": "Initiale Fassung" }, { "date": "2025-08-04T22:00:00.000+00:00", "number": "2", "summary": "Neue Updates von Dell aufgenommen" } ], "status": "final", "version": "2" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version_range", "name": "\u003c8.1.0.0", "product": { "name": "Dell PowerProtect Data Domain \u003c8.1.0.0", "product_id": "T038861" } }, { "category": "product_version", "name": "8.1.0.0", "product": { "name": "Dell PowerProtect Data Domain 8.1.0.0", "product_id": "T038861-fixed", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain:8.1.0.0" } } }, { "category": "product_version_range", "name": "\u003c7.13.1.10", "product": { "name": "Dell PowerProtect Data Domain \u003c7.13.1.10", "product_id": "T038862" } }, { "category": "product_version", "name": "7.13.1.10", "product": { "name": "Dell PowerProtect Data Domain 7.13.1.10", "product_id": "T038862-fixed", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain:7.13.1.10" } } }, { "category": "product_version_range", "name": "\u003c7.10.1.40", "product": { "name": "Dell PowerProtect Data Domain \u003c7.10.1.40", "product_id": "T038863" } }, { "category": "product_version", "name": "7.10.1.40", "product": { "name": "Dell PowerProtect Data Domain 7.10.1.40", "product_id": "T038863-fixed", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain:7.10.1.40" } } }, { "category": "product_version_range", "name": "\u003c7.7.5.50", "product": { "name": "Dell PowerProtect Data Domain \u003c7.7.5.50", "product_id": "T038864" } }, { "category": "product_version", "name": "7.7.5.50", "product": { "name": "Dell PowerProtect Data Domain 7.7.5.50", "product_id": "T038864-fixed", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain:7.7.5.50" } } }, { "category": "product_name", "name": "Dell PowerProtect Data Domain", "product": { "name": "Dell PowerProtect Data Domain", "product_id": "T045852", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain:-" } } } ], "category": "product_name", "name": "PowerProtect Data Domain" }, { "category": "product_name", "name": "Dell PowerProtect Data Domain Management Center", "product": { "name": "Dell PowerProtect Data Domain Management Center", "product_id": "T045853", "product_identification_helper": { "cpe": "cpe:/a:dell:powerprotect_data_domain_management_center:-" } } }, { "category": "product_name", "name": "Dell PowerProtect Data Domain OS", "product": { "name": "Dell PowerProtect Data Domain OS", "product_id": "T045854", "product_identification_helper": { "cpe": "cpe:/o:dell:powerprotect_data_domain_os:-" } } } ], "category": "vendor", "name": "Dell" } ] }, "vulnerabilities": [ { "cve": "CVE-2024-45759", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-45759" }, { "cve": "CVE-2024-48010", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-48010" }, { "cve": "CVE-2024-48011", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-48011" }, { "cve": "CVE-2017-16829", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2017-16829" }, { "cve": "CVE-2017-5849", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2017-5849" }, { "cve": "CVE-2018-7208", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2018-7208" }, { "cve": "CVE-2019-14889", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2019-14889" }, { "cve": "CVE-2020-12912", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-12912" }, { "cve": "CVE-2020-16135", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-16135" }, { "cve": "CVE-2020-1730", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-1730" }, { "cve": "CVE-2020-24455", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-24455" }, { "cve": "CVE-2020-8694", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-8694" }, { "cve": "CVE-2020-8695", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2020-8695" }, { "cve": "CVE-2021-27219", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2021-27219" }, { "cve": "CVE-2021-3565", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2021-3565" }, { "cve": "CVE-2021-3634", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2021-3634" }, { "cve": "CVE-2022-1210", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-1210" }, { "cve": "CVE-2022-1622", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-1622" }, { "cve": "CVE-2022-1996", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-1996" }, { "cve": "CVE-2022-22576", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-22576" }, { "cve": "CVE-2022-25313", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-25313" }, { "cve": "CVE-2022-27774", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-27774" }, { "cve": "CVE-2022-27775", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-27775" }, { "cve": "CVE-2022-27776", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-27776" }, { "cve": "CVE-2022-27781", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-27781" }, { "cve": "CVE-2022-27782", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-27782" }, { "cve": "CVE-2022-29361", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-29361" }, { "cve": "CVE-2022-32205", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-32205" }, { "cve": "CVE-2022-32206", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-32206" }, { "cve": "CVE-2022-32207", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-32207" }, { "cve": "CVE-2022-32208", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-32208" }, { "cve": "CVE-2022-32221", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-32221" }, { "cve": "CVE-2022-35252", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-35252" }, { "cve": "CVE-2022-40023", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-40023" }, { "cve": "CVE-2022-40090", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-40090" }, { "cve": "CVE-2022-42915", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-42915" }, { "cve": "CVE-2022-42916", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-42916" }, { "cve": "CVE-2022-43551", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-43551" }, { "cve": "CVE-2022-43552", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-43552" }, { "cve": "CVE-2022-4603", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-4603" }, { "cve": "CVE-2022-48064", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-48064" }, { "cve": "CVE-2022-48624", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2022-48624" }, { "cve": "CVE-2023-0461", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-0461" }, { "cve": "CVE-2023-1667", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-1667" }, { "cve": "CVE-2023-1916", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-1916" }, { "cve": "CVE-2023-20592", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-20592" }, { "cve": "CVE-2023-2137", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-2137" }, { "cve": "CVE-2023-22745", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-22745" }, { "cve": "CVE-2023-2283", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-2283" }, { "cve": "CVE-2023-23914", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-23914" }, { "cve": "CVE-2023-23915", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-23915" }, { "cve": "CVE-2023-23916", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-23916" }, { "cve": "CVE-2023-23934", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-23934" }, { "cve": "CVE-2023-25577", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-25577" }, { "cve": "CVE-2023-26965", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-26965" }, { "cve": "CVE-2023-27043", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27043" }, { "cve": "CVE-2023-2731", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-2731" }, { "cve": "CVE-2023-27533", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27533" }, { "cve": "CVE-2023-27534", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27534" }, { "cve": "CVE-2023-27535", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27535" }, { "cve": "CVE-2023-27536", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27536" }, { "cve": "CVE-2023-27538", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-27538" }, { "cve": "CVE-2023-28319", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-28319" }, { "cve": "CVE-2023-28320", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-28320" }, { "cve": "CVE-2023-28321", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-28321" }, { "cve": "CVE-2023-28322", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-28322" }, { "cve": "CVE-2023-31083", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-31083" }, { "cve": "CVE-2023-34055", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-34055" }, { "cve": "CVE-2023-35116", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-35116" }, { "cve": "CVE-2023-38286", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38286" }, { "cve": "CVE-2023-38469", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38469" }, { "cve": "CVE-2023-38471", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38471" }, { "cve": "CVE-2023-38472", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38472" }, { "cve": "CVE-2023-38545", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38545" }, { "cve": "CVE-2023-38546", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-38546" }, { "cve": "CVE-2023-39197", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-39197" }, { "cve": "CVE-2023-39198", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-39198" }, { "cve": "CVE-2023-39804", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-39804" }, { "cve": "CVE-2023-40217", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-40217" }, { "cve": "CVE-2023-42465", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-42465" }, { "cve": "CVE-2023-4255", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-4255" }, { "cve": "CVE-2023-45139", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-45139" }, { "cve": "CVE-2023-45322", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-45322" }, { "cve": "CVE-2023-45863", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-45863" }, { "cve": "CVE-2023-45871", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-45871" }, { "cve": "CVE-2023-46136", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-46136" }, { "cve": "CVE-2023-46218", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-46218" }, { "cve": "CVE-2023-46219", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-46219" }, { "cve": "CVE-2023-46751", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-46751" }, { "cve": "CVE-2023-48795", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-48795" }, { "cve": "CVE-2023-49083", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-49083" }, { "cve": "CVE-2023-50447", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-50447" }, { "cve": "CVE-2023-5049", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-5049" }, { "cve": "CVE-2023-50495", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-50495" }, { "cve": "CVE-2023-50782", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-50782" }, { "cve": "CVE-2023-51257", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-51257" }, { "cve": "CVE-2023-52425", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-52425" }, { "cve": "CVE-2023-52426", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-52426" }, { "cve": "CVE-2023-5678", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-5678" }, { "cve": "CVE-2023-5717", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-5717" }, { "cve": "CVE-2023-5752", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-5752" }, { "cve": "CVE-2023-6004", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-6004" }, { "cve": "CVE-2023-6597", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-6597" }, { "cve": "CVE-2023-6918", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-6918" }, { "cve": "CVE-2023-7207", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2023-7207" }, { "cve": "CVE-2024-0450", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-0450" }, { "cve": "CVE-2024-0727", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-0727" }, { "cve": "CVE-2024-0985", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-0985" }, { "cve": "CVE-2024-21626", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-21626" }, { "cve": "CVE-2024-22195", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-22195" }, { "cve": "CVE-2024-22365", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-22365" }, { "cve": "CVE-2024-23651", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-23651" }, { "cve": "CVE-2024-23652", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-23652" }, { "cve": "CVE-2024-23653", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-23653" }, { "cve": "CVE-2024-23672", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-23672" }, { "cve": "CVE-2024-24549", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-24549" }, { "cve": "CVE-2024-25062", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-25062" }, { "cve": "CVE-2024-26130", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-26130" }, { "cve": "CVE-2024-26458", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-26458" }, { "cve": "CVE-2024-26461", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-26461" }, { "cve": "CVE-2024-28085", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-28085" }, { "cve": "CVE-2024-28182", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-28182" }, { "cve": "CVE-2024-28219", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-28219" }, { "cve": "CVE-2024-28757", "product_status": { "known_affected": [ "T045853", "T045852", "T045854", "T038864", "T038863", "T038862", "T038861" ] }, "release_date": "2024-11-07T23:00:00.000+00:00", "title": "CVE-2024-28757" } ] }
wid-sec-w-2022-0127
Vulnerability from csaf_certbund
Published
2022-05-11 22:00
Modified
2023-12-14 23:00
Summary
libTIFF: Mehrere Schwachstellen ermöglichen Denial of Service
Notes
Das BSI ist als Anbieter für die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch dafür verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgfältig im Einzelfall zu prüfen.
Produktbeschreibung
libTIFF ist ein Softwarepaket für die Verarbeitung von Bilddateien in Tag Image File Format (TIFF).
Angriff
Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in libTIFF ausnutzen, um einen Denial of Service Angriff durchzuführen.
Betroffene Betriebssysteme
- UNIX
- Linux
- Windows
{ "document": { "aggregate_severity": { "text": "mittel" }, "category": "csaf_base", "csaf_version": "2.0", "distribution": { "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "de-DE", "notes": [ { "category": "legal_disclaimer", "text": "Das BSI ist als Anbieter f\u00fcr die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch daf\u00fcr verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgf\u00e4ltig im Einzelfall zu pr\u00fcfen." }, { "category": "description", "text": "libTIFF ist ein Softwarepaket f\u00fcr die Verarbeitung von Bilddateien in Tag Image File Format (TIFF).", "title": "Produktbeschreibung" }, { "category": "summary", "text": "Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in libTIFF ausnutzen, um einen Denial of Service Angriff durchzuf\u00fchren.", "title": "Angriff" }, { "category": "general", "text": "- UNIX\n- Linux\n- Windows", "title": "Betroffene Betriebssysteme" } ], "publisher": { "category": "other", "contact_details": "csaf-provider@cert-bund.de", "name": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik", "namespace": "https://www.bsi.bund.de" }, "references": [ { "category": "self", "summary": "WID-SEC-W-2022-0127 - CSAF Version", "url": "https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-0127.json" }, { "category": "self", "summary": "WID-SEC-2022-0127 - Portal Version", "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-0127" }, { "category": "external", "summary": "Red Hat Bugzilla - Bug 2084269 vom 2022-05-11", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2084269" }, { "category": "external", "summary": "Red Hat Bugzilla - Bug 2084260 vom 2022-05-11", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2084260" }, { "category": "external", "summary": "inTheWild CVE-2022-1622 vom 2022-05-18", "url": "https://inthewild.io/vuln/CVE-2022-1622" }, { "category": "external", "summary": "inTheWild CVE-2022-1623 vom 2022-05-18", "url": "https://inthewild.io/vuln/CVE-2022-1623" }, { "category": "external", "summary": "Amazon Linux Security Advisory ALAS-2022-094 vom 2022-07-21", "url": "https://alas.aws.amazon.com/AL2022/ALAS-2022-094.html" }, { "category": "external", "summary": "Amazon Linux Security Advisory ALAS-2022-183 vom 2022-11-04", "url": "https://alas.aws.amazon.com/AL2022/ALAS-2022-183.html" }, { "category": "external", "summary": "Debian Security Advisory DSA-5333 vom 2023-01-29", "url": "https://www.debian.org/security/2023/dsa-5333" }, { "category": "external", "summary": "SUSE Security Update SUSE-SU-2023:4736-1 vom 2023-12-14", "url": "https://lists.suse.com/pipermail/sle-security-updates/2023-December/017381.html" }, { "category": "external", "summary": "SUSE Security Update SUSE-SU-2023:4869-1 vom 2023-12-14", "url": "https://lists.suse.com/pipermail/sle-security-updates/2023-December/017421.html" } ], "source_lang": "en-US", "title": "libTIFF: Mehrere Schwachstellen erm\u00f6glichen Denial of Service", "tracking": { "current_release_date": "2023-12-14T23:00:00.000+00:00", "generator": { "date": "2024-08-15T17:26:43.742+00:00", "engine": { "name": "BSI-WID", "version": "1.3.5" } }, "id": "WID-SEC-W-2022-0127", "initial_release_date": "2022-05-11T22:00:00.000+00:00", "revision_history": [ { "date": "2022-05-11T22:00:00.000+00:00", "number": "1", "summary": "Initiale Fassung" }, { "date": "2022-05-18T22:00:00.000+00:00", "number": "2", "summary": "PoC aufgenommen" }, { "date": "2022-06-06T22:00:00.000+00:00", "number": "3", "summary": "Referenz(en) aufgenommen: FEDORA-2022-2CFAF30ADF, FEDORA-2022-EA3EBEFF3D, FEDORA-2022-E9FE21D102" }, { "date": "2022-07-20T22:00:00.000+00:00", "number": "4", "summary": "Neue Updates von Amazon aufgenommen" }, { "date": "2022-11-06T23:00:00.000+00:00", "number": "5", "summary": "Neue Updates von Amazon aufgenommen" }, { "date": "2023-01-29T23:00:00.000+00:00", "number": "6", "summary": "Neue Updates von Debian aufgenommen" }, { "date": "2023-12-14T23:00:00.000+00:00", "number": "7", "summary": "Neue Updates von SUSE aufgenommen" } ], "status": "final", "version": "7" } }, "product_tree": { "branches": [ { "branches": [ { "category": "product_name", "name": "Amazon Linux 2", "product": { "name": "Amazon Linux 2", "product_id": "398363", "product_identification_helper": { "cpe": "cpe:/o:amazon:linux_2:-" } } } ], "category": "vendor", "name": "Amazon" }, { "branches": [ { "category": "product_name", "name": "Debian Linux", "product": { "name": "Debian Linux", "product_id": "2951", "product_identification_helper": { "cpe": "cpe:/o:debian:debian_linux:-" } } } ], "category": "vendor", "name": "Debian" }, { "branches": [ { "category": "product_name", "name": "Open Source libTIFF", "product": { "name": "Open Source libTIFF", "product_id": "T001217", "product_identification_helper": { "cpe": "cpe:/a:libtiff:libtiff:-" } } } ], "category": "vendor", "name": "Open Source" }, { "branches": [ { "category": "product_name", "name": "SUSE Linux", "product": { "name": "SUSE Linux", "product_id": "T002207", "product_identification_helper": { "cpe": "cpe:/o:suse:suse_linux:-" } } } ], "category": "vendor", "name": "SUSE" } ] }, "vulnerabilities": [ { "cve": "CVE-2022-1622", "notes": [ { "category": "description", "text": "In libTIFF bestehen mehrere Schwachstellen aufgrund mehrerer Out-of-Bounds-Read-Probleme in \"LZWDecode\" in \"libtiff/tif_lzw.c\". Ein Angreifer kann eine speziell gestaltete TIFF-Bilddatei verwenden, um einen Denial-of-Service-Zustand herbeizuf\u00fchren. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion." } ], "product_status": { "known_affected": [ "2951", "T001217", "T002207", "398363" ] }, "release_date": "2022-05-11T22:00:00.000+00:00", "title": "CVE-2022-1622" }, { "cve": "CVE-2022-1623", "notes": [ { "category": "description", "text": "In libTIFF bestehen mehrere Schwachstellen aufgrund mehrerer Out-of-Bounds-Read-Probleme in \"LZWDecode\" in \"libtiff/tif_lzw.c\". Ein Angreifer kann eine speziell gestaltete TIFF-Bilddatei verwenden, um einen Denial-of-Service-Zustand herbeizuf\u00fchren. Eine erfolgreiche Ausnutzung erfordert eine Benutzerinteraktion." } ], "product_status": { "known_affected": [ "2951", "T001217", "T002207", "398363" ] }, "release_date": "2022-05-11T22:00:00.000+00:00", "title": "CVE-2022-1623" } ] }
ghsa-8xfg-6grw-wvxc
Vulnerability from github
Published
2022-05-12 00:01
Modified
2022-05-19 00:00
Severity ?
VLAI Severity ?
Details
LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
{ "affected": [], "aliases": [ "CVE-2022-1622" ], "database_specific": { "cwe_ids": [ "CWE-125" ], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2022-05-11T15:15:00Z", "severity": "MODERATE" }, "details": "LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.", "id": "GHSA-8xfg-6grw-wvxc", "modified": "2022-05-19T00:00:32Z", "published": "2022-05-12T00:01:49Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1622" }, { "type": "WEB", "url": "https://gitlab.com/gitlab-org/cves/-/blob/master/2022/CVE-2022-1622.json" }, { "type": "WEB", "url": "https://gitlab.com/libtiff/libtiff/-/commit/b4e79bfa0c7d2d08f6f1e7ec38143fc8cb11394a" }, { "type": "WEB", "url": "https://gitlab.com/libtiff/libtiff/-/issues/410" }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/C7IWZTB4J2N4F5OR5QY4VHDSKWKZSWN3" }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UXAFOP6QQRNZD3HPZ6BMCEZZOM4YIZMK" }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20220616-0005" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213443" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213444" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213446" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213486" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213487" }, { "type": "WEB", "url": "https://support.apple.com/kb/HT213488" }, { "type": "WEB", "url": "http://seclists.org/fulldisclosure/2022/Oct/41" } ], "schema_version": "1.4.0", "severity": [ { "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H", "type": "CVSS_V3" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…