Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-0564

Опубликовано: 27 мар. 2017
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2017-0564: libguestfs security and bug fix update (MODERATE)

[1:1.20.11-20]

  • inspection: fix detection of /usr in separate partition resolves: rhbz#1388407

[1:1.20.11-19]

  • libguestfs-java: bump the java Require to >= 1.7.0, matching the Build-Require, and the generated bytecode resolves: rhbz#1319086

[1:1.20.11-18]

  • Fix buffer overflow and information leak CVE-2015-8869 resolves: rhbz#1343103

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

libguestfs

1.20.11-20.el6

libguestfs-devel

1.20.11-20.el6

libguestfs-java

1.20.11-20.el6

libguestfs-java-devel

1.20.11-20.el6

libguestfs-javadoc

1.20.11-20.el6

libguestfs-tools

1.20.11-20.el6

libguestfs-tools-c

1.20.11-20.el6

ocaml-libguestfs

1.20.11-20.el6

ocaml-libguestfs-devel

1.20.11-20.el6

perl-Sys-Guestfs

1.20.11-20.el6

python-libguestfs

1.20.11-20.el6

ruby-libguestfs

1.20.11-20.el6

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 9 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

redhat
больше 9 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

CVSS3: 9.1
nvd
около 9 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

CVSS3: 9.1
debian
около 9 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which al ...

suse-cvrf
почти 9 лет назад

Security update for ocaml