Описание
Security update for expat
This update for expat fixes the following issues:
Security issue fixed:
- CVE-2018-20843: Fixed a denial of service triggered by high resource consumption in the XML parser when XML names contain a large amount of colons (bsc#1139937).
Список пакетов
Container bci/bci-init:15.3
libexpat1-2.2.5-3.3.1
Container bci/golang:1.16
libexpat1-2.2.5-3.3.1
Container bci/golang:1.17
libexpat1-2.2.5-3.3.1
Container bci/golang:latest
libexpat1-2.2.5-3.3.1
Container bci/node:12
libexpat1-2.2.5-3.3.1
Container bci/node:14
libexpat1-2.2.5-3.3.1
Container bci/nodejs:latest
libexpat1-2.2.5-3.3.1
Container bci/openjdk-devel:11
libexpat1-2.2.5-3.3.1
Container bci/openjdk:latest
libexpat1-2.2.5-3.3.1
Container bci/python:3
libexpat1-2.2.5-3.3.1
Container bci/ruby:latest
libexpat1-2.2.5-3.3.1
Container caasp/v4/389-ds:1.4.2
libexpat1-2.2.5-3.3.1
Container caasp/v4/cilium:1.6.6
libexpat1-2.2.5-3.3.1
Container caasp/v4/etcd:3.4.13
libexpat1-2.2.5-3.3.1
Container caasp/v4/hyperkube:v1.17.17
libexpat1-2.2.5-3.3.1
Container caasp/v4/k8s-sidecar:0.1.75
libexpat1-2.2.5-3.3.1
Container caasp/v4/prometheus-alertmanager:0.16.2
libexpat1-2.2.5-3.3.1
Container caasp/v4/prometheus-pushgateway:0.6.0
libexpat1-2.2.5-3.3.1
Container caasp/v4/prometheus-server:2.7.1
libexpat1-2.2.5-3.3.1
Container caasp/v4/rsyslog:8.39.0
libexpat1-2.2.5-3.3.1
Container caasp/v4/skuba-tooling:0.1.0
libexpat1-2.2.5-3.3.1
Container ses/6/cephcsi/cephcsi:latest
libexpat1-2.2.5-3.3.1
Container ses/6/rook/ceph:latest
libexpat1-2.2.5-3.3.1
Container ses/7.1/ceph/haproxy:latest
libexpat1-2.2.5-3.3.1
Container ses/7.1/ceph/keepalived:latest
libexpat1-2.2.5-3.3.1
Container ses/7.1/cephcsi/cephcsi:latest
libexpat1-2.2.5-3.3.1
Container ses/7.1/rook/ceph:latest
libexpat1-2.2.5-3.3.1
Container ses/7/ceph/ceph:latest
libexpat1-2.2.5-3.3.1
Container ses/7/ceph/grafana:latest
libexpat1-2.2.5-3.3.1
Container ses/7/cephcsi/cephcsi:latest
libexpat1-2.2.5-3.3.1
Container ses/7/prometheus-webhook-snmp:latest
libexpat1-2.2.5-3.3.1
Container ses/7/rook/ceph:latest
libexpat1-2.2.5-3.3.1
Container suse/pcp:latest
libexpat1-2.2.5-3.3.1
Container suse/rmt-mariadb:latest
libexpat1-2.2.5-3.3.1
Container suse/rmt-nginx:latest
libexpat1-2.2.5-3.3.1
Container suse/sle-micro-rancher/5.2:latest
libexpat1-2.2.5-3.3.1
Container suse/sle-micro/5.0/toolbox:latest
libexpat1-2.2.5-3.3.1
Container suse/sle-micro/5.1/toolbox:latest
libexpat1-2.2.5-3.3.1
Container suse/sle-micro/5.2/toolbox:latest
libexpat1-2.2.5-3.3.1
Container suse/sles/15.2/virt-handler:0.38.1
libexpat1-2.2.5-3.3.1
Container suse/sles/15.2/virt-launcher:0.38.1
libexpat1-2.2.5-3.3.1
Container suse/sles/15.3/cdi-importer:1.37.1
libexpat1-2.2.5-3.3.1
Container suse/sles/15.3/cdi-uploadserver:1.37.1
libexpat1-2.2.5-3.3.1
Container suse/sles/15.3/libguestfs-tools:0.45.0
libexpat1-2.2.5-3.3.1
Container suse/sles/15.3/virt-handler:0.45.0
libexpat1-2.2.5-3.3.1
Container suse/sles/15.3/virt-launcher:0.45.0
libexpat1-2.2.5-3.3.1
Container trento/trento-db:latest
libexpat1-2.2.5-3.3.1
Container trento/trento-runner:latest
libexpat1-2.2.5-3.3.1
Image SLES15-Azure-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-EC2-CHOST-HVM-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-EC2-HVM-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-GCE-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-OCI-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-Azure
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-Azure-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-Azure-LI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-EC2-HVM
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-EC2-HVM-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-GCE
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-GCE-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SAP-OCI-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Azure-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Azure-HPC-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-CAP-Deployment-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-CAP-Deployment-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-CHOST-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-CHOST-BYOS-EC2
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-CHOST-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-EC2-HPC-HVM-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-EC2-HVM-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-GCE-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-Azure-BYOS-Proxy
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-Azure-BYOS-Server
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Proxy
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Server
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Proxy
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Server
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-OCI-BYOS
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-Azure
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-Azure-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-EC2-HVM
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-EC2-HVM-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-GCE
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-GCE-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAP-OCI-BYOS
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAPCAL-Azure
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAPCAL-EC2-HVM
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP1-SAPCAL-GCE
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Azure-Basic
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Azure-Standard
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-CAP-Deployment-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-CHOST-BYOS-Aliyun
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-CHOST-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-CHOST-BYOS-EC2
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-CHOST-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-EC2-ECS-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-HPC-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-HPC-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-HPC-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-Azure
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-BYOS-Azure
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-BYOS-GCE
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-EC2-HVM
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP2-SAP-GCE
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-CHOST-BYOS-Aliyun
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-CHOST-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-CHOST-BYOS-EC2
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-CHOST-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-CHOST-BYOS-SAP-CCloud
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-EC2-ECS-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-EC2-HVM
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-HPC-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-HPC-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-HPC-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-HPC-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-1-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-1-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-1-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-2-BYOS-Azure
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-2-BYOS-EC2-HVM
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-5-2-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-Micro-BYOS-GCE
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-Azure
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-BYOS-Azure
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-BYOS-EC2-HVM
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-BYOS-GCE
expat-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-EC2-HVM
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAP-GCE
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAPCAL-Azure
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAPCAL-EC2-HVM
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
Image SLES15-SP3-SAPCAL-GCE
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
SUSE Linux Enterprise Module for Basesystem 15
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
libexpat1-32bit-2.2.5-3.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP1
expat-2.2.5-3.3.1
libexpat-devel-2.2.5-3.3.1
libexpat1-2.2.5-3.3.1
libexpat1-32bit-2.2.5-3.3.1
Ссылки
- Link for SUSE-SU-2019:1835-1
- E-Mail link for SUSE-SU-2019:1835-1
- SUSE Security Ratings
- SUSE Bug 1139937
- SUSE CVE CVE-2018-20843 page
Описание
In libexpat in Expat before 2.2.7, XML input including XML names that contain a large number of colons could make the XML parser consume a high amount of RAM and CPU resources while processing (enough to be usable for denial-of-service attacks).
Затронутые продукты
Container bci/bci-init:15.3:libexpat1-2.2.5-3.3.1
Container bci/golang:1.16:libexpat1-2.2.5-3.3.1
Container bci/golang:1.17:libexpat1-2.2.5-3.3.1
Container bci/golang:latest:libexpat1-2.2.5-3.3.1
Ссылки
- CVE-2018-20843
- SUSE Bug 1139937