Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2019:0024-1

Опубликовано: 07 янв. 2019
Источник: suse-cvrf

Описание

Security update for libgit2

This update for libgit2 fixes the following issues:

Security issues fixed:

  • CVE-2018-19456: Fixed a code execution by malicious .gitmodules file (bsc#1110949)
  • various string-to-integer and buffer handling fixes (bsc#1114729).

Список пакетов

SUSE Linux Enterprise Software Development Kit 12 SP3
libgit2-24-0.24.1-7.9.1
SUSE Linux Enterprise Software Development Kit 12 SP4
libgit2-24-0.24.1-7.9.1
SUSE Manager Server 3.1
libgit2-24-0.24.1-7.9.1
SUSE Manager Server 3.2
libgit2-24-0.24.1-7.9.1

Описание

The WP Backup+ (aka WPbackupplus) plugin through 2018-11-22 for WordPress allows remote attackers to obtain sensitive information from server folders and files, as demonstrated by download.sql.


Затронутые продукты
SUSE Linux Enterprise Software Development Kit 12 SP3:libgit2-24-0.24.1-7.9.1
SUSE Linux Enterprise Software Development Kit 12 SP4:libgit2-24-0.24.1-7.9.1
SUSE Manager Server 3.1:libgit2-24-0.24.1-7.9.1
SUSE Manager Server 3.2:libgit2-24-0.24.1-7.9.1

Ссылки