Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-0679

Опубликовано: 28 мар. 2019
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2019-0679: libssh2 security update (IMPORTANT)

[1.4.3-12.el7_6.2]

  • sanitize public header file (detected by rpmdiff)

[1.4.3-12.el7_6.1]

  • fix integer overflow in keyboard interactive handling that allows out-of-bounds writes (CVE-2019-3863)
  • fix integer overflow in SSH packet processing channel resulting in out of bounds write (CVE-2019-3857)
  • fix integer overflow in keyboard interactive handling resulting in out of bounds write (CVE-2019-3856)
  • fix integer overflow in transport read resulting in out of bounds write (CVE-2019-3855)

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

libssh2

1.4.3-12.el7_6.2

libssh2-devel

1.4.3-12.el7_6.2

libssh2-docs

1.4.3-12.el7_6.2

Oracle Linux x86_64

libssh2

1.4.3-12.el7_6.2

libssh2-devel

1.4.3-12.el7_6.2

libssh2-docs

1.4.3-12.el7_6.2

Связанные уязвимости

oracle-oval
почти 6 лет назад

ELSA-2019-1652: libssh2 security update (IMPORTANT)

suse-cvrf
около 6 лет назад

Security update for libssh2_org

suse-cvrf
около 6 лет назад

Security update for libssh2_org

suse-cvrf
около 6 лет назад

Security update for libssh2_org

suse-cvrf
больше 6 лет назад

Security update for libssh2_org