Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:1916-1

Опубликовано: 09 июл. 2018
Источник: suse-cvrf

Описание

Security update for openslp

This update for openslp fixes the following issues:

  • CVE-2017-17833: Prevent heap-related memory corruption issue which may have manifested itself as a denial-of-service or a remote code-execution vulnerability (bsc#1090638).

Список пакетов

SUSE Linux Enterprise Point of Sale 11 SP3
openslp-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS
libslp1-openssl1-1.2.0-172.27.3.1
libslp1-openssl1-32bit-1.2.0-172.27.3.1
openslp-1.2.0-172.27.3.1
openslp-32bit-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
libslp1-openssl1-1.2.0-172.27.3.1
libslp1-openssl1-32bit-1.2.0-172.27.3.1
openslp-1.2.0-172.27.3.1
openslp-32bit-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11 SP4
openslp-1.2.0-172.27.3.1
openslp-32bit-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1
openslp-x86-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11-SECURITY
libslp1-openssl1-1.2.0-172.27.3.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
openslp-1.2.0-172.27.3.1
openslp-32bit-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1
openslp-x86-1.2.0-172.27.3.1
SUSE Linux Enterprise Software Development Kit 11 SP4
openslp-devel-1.2.0-172.27.3.1
openslp-server-1.2.0-172.27.3.1

Описание

OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.


Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:openslp-1.2.0-172.27.3.1
SUSE Linux Enterprise Point of Sale 11 SP3:openslp-server-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS:libslp1-openssl1-1.2.0-172.27.3.1
SUSE Linux Enterprise Server 11 SP3-LTSS:libslp1-openssl1-32bit-1.2.0-172.27.3.1

Ссылки