Novell Home

CVE-2013-6630

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2013-6630 at MITRE

Description

The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48 and other products, does not set all elements of a certain Huffman value array during the reading of segments that follow Define Huffman Table (DHT) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.

NVD CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:P/I:N/A:N)

SUSE information

SUSE Bugzilla entry: 850430

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 12.3
  • MozillaFirefox >= 26.0-1.43.1
  • MozillaFirefox-branding-upstream >= 26.0-1.43.1
  • MozillaFirefox-buildsymbols >= 26.0-1.43.1
  • MozillaFirefox-debuginfo >= 26.0-1.43.1
  • MozillaFirefox-debugsource >= 26.0-1.43.1
  • MozillaFirefox-devel >= 26.0-1.43.1
  • MozillaFirefox-translations-common >= 26.0-1.43.1
  • MozillaFirefox-translations-other >= 26.0-1.43.1
  • MozillaThunderbird >= 24.2.0-61.35.1
  • MozillaThunderbird-buildsymbols >= 24.2.0-61.35.1
  • MozillaThunderbird-debuginfo >= 24.2.0-61.35.1
  • MozillaThunderbird-debugsource >= 24.2.0-61.35.1
  • MozillaThunderbird-devel >= 24.2.0-61.35.1
  • MozillaThunderbird-translations-common >= 24.2.0-61.35.1
  • MozillaThunderbird-translations-other >= 24.2.0-61.35.1
  • chromedriver >= 31.0.1650.57-1.17.1
  • chromedriver-debuginfo >= 31.0.1650.57-1.17.1
  • chromium >= 31.0.1650.57-1.17.1
  • chromium-debuginfo >= 31.0.1650.57-1.17.1
  • chromium-debugsource >= 31.0.1650.57-1.17.1
  • chromium-desktop-gnome >= 31.0.1650.57-1.17.1
  • chromium-desktop-kde >= 31.0.1650.57-1.17.1
  • chromium-ffmpegsumo >= 31.0.1650.57-1.17.1
  • chromium-ffmpegsumo-debuginfo >= 31.0.1650.57-1.17.1
  • chromium-suid-helper >= 31.0.1650.57-1.17.1
  • chromium-suid-helper-debuginfo >= 31.0.1650.57-1.17.1
  • enigmail >= 1.6.0+24.2.0-61.35.1
  • enigmail-debuginfo >= 1.6.0+24.2.0-61.35.1
  • seamonkey >= 2.23-1.29.2
  • seamonkey-debuginfo >= 2.23-1.29.2
  • seamonkey-debugsource >= 2.23-1.29.2
  • seamonkey-dom-inspector >= 2.23-1.29.2
  • seamonkey-irc >= 2.23-1.29.2
  • seamonkey-translations-common >= 2.23-1.29.2
  • seamonkey-translations-other >= 2.23-1.29.2
  • seamonkey-venkman >= 2.23-1.29.2
Patchnames:
openSUSE-2013-1023
openSUSE-2013-903
openSUSE-2013-994
openSUSE-2014-2
openSUSE 13.1
  • MozillaFirefox >= 26.0-4.2
  • MozillaFirefox-branding-upstream >= 26.0-4.2
  • MozillaFirefox-buildsymbols >= 26.0-4.2
  • MozillaFirefox-debuginfo >= 26.0-4.2
  • MozillaFirefox-debugsource >= 26.0-4.2
  • MozillaFirefox-devel >= 26.0-4.2
  • MozillaFirefox-translations-common >= 26.0-4.2
  • MozillaFirefox-translations-other >= 26.0-4.2
  • MozillaThunderbird >= 24.2.0-70.7.2
  • MozillaThunderbird-buildsymbols >= 24.2.0-70.7.2
  • MozillaThunderbird-debuginfo >= 24.2.0-70.7.2
  • MozillaThunderbird-debugsource >= 24.2.0-70.7.2
  • MozillaThunderbird-devel >= 24.2.0-70.7.2
  • MozillaThunderbird-translations-common >= 24.2.0-70.7.2
  • MozillaThunderbird-translations-other >= 24.2.0-70.7.2
  • chromedriver >= 31.0.1650.63-13.7
  • chromedriver-debuginfo >= 31.0.1650.63-13.7
  • chromium >= 31.0.1650.63-13.7
  • chromium-debuginfo >= 31.0.1650.63-13.7
  • chromium-debugsource >= 31.0.1650.63-13.7
  • chromium-desktop-gnome >= 31.0.1650.63-13.7
  • chromium-desktop-kde >= 31.0.1650.63-13.7
  • chromium-ffmpegsumo >= 31.0.1650.63-13.7
  • chromium-ffmpegsumo-debuginfo >= 31.0.1650.63-13.7
  • chromium-suid-helper >= 31.0.1650.63-13.7
  • chromium-suid-helper-debuginfo >= 31.0.1650.63-13.7
  • enigmail >= 1.6.0+24.2.0-70.7.2
  • enigmail-debuginfo >= 1.6.0+24.2.0-70.7.2
  • seamonkey >= 2.23-4.3
  • seamonkey-debuginfo >= 2.23-4.3
  • seamonkey-debugsource >= 2.23-4.3
  • seamonkey-dom-inspector >= 2.23-4.3
  • seamonkey-irc >= 2.23-4.3
  • seamonkey-translations-common >= 2.23-4.3
  • seamonkey-translations-other >= 2.23-4.3
  • seamonkey-venkman >= 2.23-4.3
Patchnames:
openSUSE-2013-1022
openSUSE-2013-961
openSUSE-2013-995
openSUSE-2014-2
openSUSE-2014-37
openSUSE Evergreen 11.4
  • MozillaFirefox >= 24.8.0-127.1
  • MozillaFirefox-branding-upstream >= 24.8.0-127.1
  • MozillaFirefox-buildsymbols >= 24.8.0-127.1
  • MozillaFirefox-debuginfo >= 24.8.0-127.1
  • MozillaFirefox-debugsource >= 24.8.0-127.1
  • MozillaFirefox-devel >= 24.8.0-127.1
  • MozillaFirefox-translations-common >= 24.8.0-127.1
  • MozillaFirefox-translations-other >= 24.8.0-127.1
  • MozillaThunderbird >= 24.2.0-81.2
  • MozillaThunderbird-buildsymbols >= 24.2.0-81.2
  • MozillaThunderbird-debuginfo >= 24.2.0-81.2
  • MozillaThunderbird-debugsource >= 24.2.0-81.2
  • MozillaThunderbird-devel >= 24.2.0-81.2
  • MozillaThunderbird-translations-common >= 24.2.0-81.2
  • MozillaThunderbird-translations-other >= 24.2.0-81.2
  • enigmail >= 1.6.0+24.2.0-81.2
  • libfreebl3 >= 3.16.4-94.1
  • libfreebl3-32bit >= 3.16.4-94.1
  • libfreebl3-debuginfo >= 3.16.4-94.1
  • libfreebl3-debuginfo-32bit >= 3.16.4-94.1
  • libfreebl3-debuginfo-x86 >= 3.16.4-94.1
  • libfreebl3-x86 >= 3.16.4-94.1
  • libsoftokn3 >= 3.16.4-94.1
  • libsoftokn3-32bit >= 3.16.4-94.1
  • libsoftokn3-debuginfo >= 3.16.4-94.1
  • libsoftokn3-debuginfo-32bit >= 3.16.4-94.1
  • libsoftokn3-debuginfo-x86 >= 3.16.4-94.1
  • libsoftokn3-x86 >= 3.16.4-94.1
  • mozilla-nss >= 3.16.4-94.1
  • mozilla-nss-32bit >= 3.16.4-94.1
  • mozilla-nss-certs >= 3.16.4-94.1
  • mozilla-nss-certs-32bit >= 3.16.4-94.1
  • mozilla-nss-certs-debuginfo >= 3.16.4-94.1
  • mozilla-nss-certs-debuginfo-32bit >= 3.16.4-94.1
  • mozilla-nss-certs-debuginfo-x86 >= 3.16.4-94.1
  • mozilla-nss-certs-x86 >= 3.16.4-94.1
  • mozilla-nss-debuginfo >= 3.16.4-94.1
  • mozilla-nss-debuginfo-32bit >= 3.16.4-94.1
  • mozilla-nss-debuginfo-x86 >= 3.16.4-94.1
  • mozilla-nss-debugsource >= 3.16.4-94.1
  • mozilla-nss-devel >= 3.16.4-94.1
  • mozilla-nss-sysinit >= 3.16.4-94.1
  • mozilla-nss-sysinit-32bit >= 3.16.4-94.1
  • mozilla-nss-sysinit-debuginfo >= 3.16.4-94.1
  • mozilla-nss-sysinit-debuginfo-32bit >= 3.16.4-94.1
  • mozilla-nss-sysinit-debuginfo-x86 >= 3.16.4-94.1
  • mozilla-nss-sysinit-x86 >= 3.16.4-94.1
  • mozilla-nss-tools >= 3.16.4-94.1
  • mozilla-nss-tools-debuginfo >= 3.16.4-94.1
  • mozilla-nss-x86 >= 3.16.4-94.1
  • seamonkey >= 2.23-85.1
  • seamonkey-debuginfo >= 2.23-85.1
  • seamonkey-debugsource >= 2.23-85.1
  • seamonkey-dom-inspector >= 2.23-85.1
  • seamonkey-irc >= 2.23-85.1
  • seamonkey-translations-common >= 2.23-85.1
  • seamonkey-translations-other >= 2.23-85.1
  • seamonkey-venkman >= 2.23-85.1
Patchnames:
2013-170
2014-82

© 2015 Novell