← Back

Opensuse Project

opensuse_project

54 CVEs • 9 products

Products (9)

Click to collapse
Toggle

CVEs (54)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
4Canonical
ImagemagickOpensuse+1 more
9Imagemagick
LeapOpensuse+6 more
May 13, 2026
Mar 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The png coder in ImageMagick allows remote attackers to cause a denial of service (crash).
4Canonical
ImagemagickOpensuse+1 more
10Imagemagick
LeapLeap+7 more
May 13, 2026
Mar 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Memory leak in ImageMagick allows remote attackers to cause a denial of service (memory consumption).
4Canonical
ImagemagickOpensuse+1 more
10Imagemagick
LeapOpensuse+7 more
May 13, 2026
Mar 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The jng decoder in ImageMagick 6.8.9.9 allows remote attackers to have an unspecified impact.
5Canonical
ImagemagickOpensuse+2 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact.
5Canonical
ImagemagickOpensuse+2 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 20, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The ReadDIBImage function in coders/dib.c in ImageMagick allows remote attackers to cause a denial of service (crash) via a corrupted dib file.
5Canonical
ImagemagickOpensuse+2 more
10Imagemagick
LeapOpensuse+7 more
May 13, 2026
Mar 20, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The ReadRLEImage function in coders/rle.c in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image file.
4Canonical
ImagemagickOpensuse+1 more
8Imagemagick
LeapOpensuse+5 more
May 13, 2026
Mar 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The DecodePSDPixels function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact via unknown vectors.
4Canonical
ImagemagickOpensuse+1 more
9Imagemagick
LeapOpensuse+6 more
May 13, 2026
Mar 20, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
4Canonical
ImagemagickOpensuse+1 more
8Imagemagick
LeapOpensuse+5 more
May 13, 2026
Mar 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact via unknown vectors, related to "throwing of exceptions."
6Canonical
ImagemagickNovell+3 more
11Imagemagick
LeapLeap+8 more
May 13, 2026
Mar 17, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
Memory leak in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (memory consumption) via a crafted rle file.
4Debian
OpensuseOpensuse Project+1 more
4Debian Linux
LeapLeap+1 more
May 13, 2026
Mar 15, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1.1.26 allows remote attackers to inject arbitrary web script or HTML via the nav_data name.
2Imagemagick
Opensuse Project
2Imagemagick
Leap
May 13, 2026
Mar 2, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
coders/mat.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a mat file with an invalid number of frames.
3Imagemagick
OpensuseOpensuse Project
3Imagemagick
LeapLeap
May 13, 2026
Mar 2, 2017
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted XML file.
3Opensuse
Opensuse ProjectTats
3Leap
LeapW3m
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.
3Opensuse
Opensuse ProjectTats
3Leap
LeapW3m
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.
3Libtiff
OpensuseOpensuse Project
3Leap
LibtiffOpensuse
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a craf...Show more
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.Show less
3Libtiff
OpensuseOpensuse Project
3Leap
LibtiffOpensuse
May 13, 2026
Jan 20, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
3Kernel
OpensuseOpensuse Project
3Leap
OpensuseUtil Linux
May 6, 2026
Nov 9, 2015
N/A· v4
N/A· v3
2.1 LOW· v2
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
4Debian
DjangoprojectOpensuse+1 more
4Debian Linux
DjangoOpensuse+1 more
May 6, 2026
Aug 26, 2014
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The default configuration for the file upload handling system in Django before 1.4.14, 1.5.x before 1.5.9, 1.6.x before 1.6.6, and 1.7 before release candidate 3 uses a sequential file name generation process when a file...Show more
The default configuration for the file upload handling system in Django before 1.4.14, 1.5.x before 1.5.9, 1.6.x before 1.6.6, and 1.7 before release candidate 3 uses a sequential file name generation process when a file with a conflicting name is uploaded, which allows remote attackers to cause a denial of service (CPU consumption) by unloading a multiple files with the same name.Show less
6Debian
MariadbOpensuse Project+3 more
12Debian Linux
Linux Enterprise DesktopLinux Enterprise Server+9 more
May 6, 2026
Jul 17, 2014
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors relat...Show more
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRINFOSC.Show less