Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:3487-1

Опубликовано: 26 окт. 2018
Источник: suse-cvrf

Описание

Security update for kdelibs3

This update for kdelibs3 fixes the following issues:

  • CVE-2015-7543: Insecure creation of temporary directories allowed local users to hijack the IPC by pre-creating the temporary directory (bsc#958347).

Список пакетов

SUSE Linux Enterprise Server 11 SP4
kdelibs3-3.5.10-23.30.5.1
kdelibs3-32bit-3.5.10-23.30.5.1
kdelibs3-default-style-3.5.10-23.30.5.1
kdelibs3-default-style-32bit-3.5.10-23.30.5.1
kdelibs3-default-style-x86-3.5.10-23.30.5.1
kdelibs3-x86-3.5.10-23.30.5.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
kdelibs3-3.5.10-23.30.5.1
kdelibs3-32bit-3.5.10-23.30.5.1
kdelibs3-default-style-3.5.10-23.30.5.1
kdelibs3-default-style-32bit-3.5.10-23.30.5.1
kdelibs3-default-style-x86-3.5.10-23.30.5.1
kdelibs3-x86-3.5.10-23.30.5.1
SUSE Linux Enterprise Software Development Kit 11 SP4
kdelibs3-32bit-3.5.10-23.30.5.1
kdelibs3-arts-3.5.10-23.30.5.1
kdelibs3-arts-32bit-3.5.10-23.30.5.1
kdelibs3-arts-x86-3.5.10-23.30.5.1
kdelibs3-default-style-32bit-3.5.10-23.30.5.1
kdelibs3-devel-3.5.10-23.30.5.1
kdelibs3-doc-3.5.10-23.30.5.1

Описание

aRts 1.5.10 and kdelibs3 3.5.10 and earlier do not properly create temporary directories, which allows local users to hijack the IPC by pre-creating the temporary directory.


Затронутые продукты
SUSE Linux Enterprise Server 11 SP4:kdelibs3-3.5.10-23.30.5.1
SUSE Linux Enterprise Server 11 SP4:kdelibs3-32bit-3.5.10-23.30.5.1
SUSE Linux Enterprise Server 11 SP4:kdelibs3-default-style-3.5.10-23.30.5.1
SUSE Linux Enterprise Server 11 SP4:kdelibs3-default-style-32bit-3.5.10-23.30.5.1

Ссылки