Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2015:2384-1

Опубликовано: 28 дек. 2015
Источник: suse-cvrf

Описание

Security update for xfsprogs

xfsprogs was updated to fix one security vulnerability and several bugs.

  • Handle unwanted data disclosure in xfs_metadump (bsc#939367, CVE-2012-2150)

Список пакетов

SUSE Linux Enterprise Desktop 12
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Desktop 12 SP1
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server 12
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server 12 SP1
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server for SAP Applications 12
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server for SAP Applications 12 SP1
xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Software Development Kit 12
xfsprogs-devel-3.2.1-3.5
SUSE Linux Enterprise Software Development Kit 12 SP1
xfsprogs-devel-3.2.1-3.5

Описание

xfs_metadump in xfsprogs before 3.2.4 does not properly obfuscate file data, which allows remote attackers to obtain sensitive information by reading a generated image.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Desktop 12:xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server 12 SP1:xfsprogs-3.2.1-3.5
SUSE Linux Enterprise Server 12:xfsprogs-3.2.1-3.5

Ссылки