Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2016:1639-1

Опубликовано: 21 июн. 2016
Источник: suse-cvrf

Описание

Security update for libimobiledevice, usbmuxd

libimobiledevice, usbmuxd were updated to fix one security issue.

This security issue was fixed:

  • CVE-2016-5104: Sockets listening on INADDR_ANY instead of only locally (982014).

Список пакетов

SUSE Linux Enterprise Desktop 12
libimobiledevice-tools-1.1.5-6.1
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Desktop 12 SP1
libimobiledevice-tools-1.1.5-6.1
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Server 12
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Server 12 SP1
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Server for SAP Applications 12
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
libimobiledevice4-1.1.5-6.1
libusbmuxd2-1.0.8-12.1
usbmuxd-1.0.8-12.1
SUSE Linux Enterprise Software Development Kit 12
libimobiledevice-devel-1.1.5-6.1
libusbmuxd-devel-1.0.8-12.1
SUSE Linux Enterprise Software Development Kit 12 SP1
libimobiledevice-devel-1.1.5-6.1
libusbmuxd-devel-1.0.8-12.1
SUSE Linux Enterprise Workstation Extension 12
libimobiledevice-tools-1.1.5-6.1
SUSE Linux Enterprise Workstation Extension 12 SP1
libimobiledevice-tools-1.1.5-6.1

Описание

The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass intended access restrictions and communicate with services on iOS devices by connecting to an IPv4 TCP socket.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP1:libimobiledevice-tools-1.1.5-6.1
SUSE Linux Enterprise Desktop 12 SP1:libimobiledevice4-1.1.5-6.1
SUSE Linux Enterprise Desktop 12 SP1:libusbmuxd2-1.0.8-12.1
SUSE Linux Enterprise Desktop 12 SP1:usbmuxd-1.0.8-12.1

Ссылки