← Back

Opensuse

opensuse

Vendor: Opensuse • 1,454 CVEs

CVEs (1,454)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
3Debian
GraphicsmagickOpensuse
4Debian Linux
GraphicsmagickLeap+1 more
May 13, 2026
Feb 6, 2017
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and the file size.
3Debian
GraphicsmagickOpensuse
4Debian Linux
GraphicsmagickLeap+1 more
May 13, 2026
Feb 6, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
3Debian
GraphicsmagickOpensuse
4Debian Linux
GraphicsmagickLeap+1 more
May 13, 2026
Feb 6, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2...Show more
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.Show less
4Fedoraproject
Libgit2 ProjectOpensuse+1 more
5Fedora
LeapLibgit2+2 more
May 13, 2026
Feb 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a cat-file command with a crafted object file.
4Fedoraproject
Libgit2 ProjectOpensuse+1 more
5Fedora
LeapLibgit2+2 more
May 13, 2026
Feb 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a cat-file command with a crafted object file.
3Debian
GraphicsmagickOpensuse
4Debian Linux
GraphicsmagickLeap+1 more
May 13, 2026
Feb 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via a crafted svg file.
4Debian
GraphicsmagickOpensuse+1 more
7Debian Linux
GraphicsmagickLeap+4 more
May 13, 2026
Feb 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in code...Show more
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath function in magick/render.c.Show less
4Debian
GraphicsmagickOpensuse+1 more
7Debian Linux
GraphicsmagickLeap+4 more
May 13, 2026
Feb 3, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in m...Show more
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.Show less
4Novell
NtpOpensuse+1 more
10Leap
Linux Enterprise DebuginfoLinux Enterprise Desktop+7 more
May 13, 2026
Jan 30, 2017
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.
3Debian
LibtiffOpensuse
3Debian Linux
LibtiffOpensuse
May 13, 2026
Jan 27, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of le...Show more
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.Show less
2Libtiff
Opensuse
2Libtiff
Opensuse
May 13, 2026
Jan 27, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that...Show more
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297.Show less
2Libtiff
Opensuse
2Libtiff
Opensuse
May 13, 2026
Jan 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted Tiff image.
2Libtiff
Opensuse
2Libtiff
Opensuse
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.
3Libtiff
OpensuseOpensuse Project
3Leap
LibtiffOpensuse
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a craf...Show more
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.Show less
3Libtiff
OpensuseOpensuse Project
3Leap
LibtiffOpensuse
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
2Kde
Opensuse
3Kde Cli Tools
LeapOpensuse
May 6, 2026
Dec 23, 2016
N/A· v4
4.9 MEDIUM· v3
4.0 MEDIUM· v2
A maliciously crafted command line for kdesu can result in the user only seeing part of the commands that will actually get executed as super user.
3Bdwgc Project
DebianOpensuse
4Bdwgc
Debian LinuxLeap+1 more
May 6, 2026
Dec 12, 2016
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.
3Fedoraproject
GnuOpensuse
3Fedora
GlibcOpensuse
May 6, 2026
Oct 7, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-dependent attackers to ca...Show more
The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-dependent attackers to cause a denial of service (hang), as demonstrated by applications compiled using gccgo, related to backtrace generation.Show less
2Libgd
Opensuse
3Leap
LibgdOpensuse
May 6, 2026
Oct 3, 2016
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The read_image_tga function in gd_tga.c in the GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TGA image.
2Freerdp
Opensuse
3Freerdp
LeapOpensuse
May 6, 2026
Oct 3, 2016
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
FreeRDP before 1.1.0-beta1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified vectors.