Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2017-0564

Опубликовано: 27 мар. 2017
Источник: oracle-oval
Платформа: Oracle Linux 6

Описание

ELSA-2017-0564: libguestfs security and bug fix update (MODERATE)

[1:1.20.11-20]

  • inspection: fix detection of /usr in separate partition resolves: rhbz#1388407

[1:1.20.11-19]

  • libguestfs-java: bump the java Require to >= 1.7.0, matching the Build-Require, and the generated bytecode resolves: rhbz#1319086

[1:1.20.11-18]

  • Fix buffer overflow and information leak CVE-2015-8869 resolves: rhbz#1343103

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

libguestfs

1.20.11-20.el6

libguestfs-devel

1.20.11-20.el6

libguestfs-java

1.20.11-20.el6

libguestfs-java-devel

1.20.11-20.el6

libguestfs-javadoc

1.20.11-20.el6

libguestfs-tools

1.20.11-20.el6

libguestfs-tools-c

1.20.11-20.el6

ocaml-libguestfs

1.20.11-20.el6

ocaml-libguestfs-devel

1.20.11-20.el6

perl-Sys-Guestfs

1.20.11-20.el6

python-libguestfs

1.20.11-20.el6

ruby-libguestfs

1.20.11-20.el6

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 10 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

redhat
больше 10 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

CVSS3: 9.1
nvd
около 10 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the String.copy function.

CVSS3: 9.1
debian
около 10 лет назад

OCaml before 4.03.0 does not properly handle sign extensions, which al ...

suse-cvrf
почти 10 лет назад

Security update for ocaml