openSUSE Tumbleweed — imlib2 — multiple vulnerabilities (4 CVEs) — patch and remediation guide
🔴 Critical ⏱ 15–90 min Last verified: 25 May 2026 Affected versions: openSUSE Tumbleweed 📖 ~4 min read • Source: SUSE security advisory (see also SUSE bugzilla) Related CVEs: CVE-2020-12761 CVE-2008-2426 CVE-2008-5187 CVE-2010-0991 Upstream summary: modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon […]