Description of the patch:
This update for netpbm fixes the following issues:
Security issues fixed:
CVE-2018-8975: The pm_mallocarray2 function allowed remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted image file (bsc#1086777).
CVE-2017-2579: Fixed out-of-bounds read in expandCodeOntoStack() (bsc#1024288).
CVE-2017-2580: Fixed out-of-bounds write of heap data in addPixelToRaster() function (bsc#1024291).
create netpbm-vulnerable subpackage and move pstopnm there (bsc#1136936)
10.66.3-8.7.210.66.3-8.7.210.66.3-8.7.210.66.3-8.7.2Exploitability
AV:LAC:LPR:NUI:RScope
S:UImpact
C:HI:HA:H7.8/CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H