Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:0490-1

Опубликовано: 26 фев. 2020
Источник: suse-cvrf

Описание

Security update for ppp

This update for ppp fixes the following security issue:

  • CVE-2020-8597: Fixed a buffer overflow in the eap_request and eap_response functions (bsc#1162610).

Список пакетов

HPE Helion OpenStack 8
ppp-2.4.7-4.3.1
SUSE Enterprise Storage 5
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Desktop 12 SP4
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP1-LTSS
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP2-BCL
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP2-LTSS
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP3-BCL
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP3-LTSS
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP4
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP5
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP4
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
ppp-2.4.7-4.3.1
SUSE Linux Enterprise Software Development Kit 12 SP4
ppp-devel-2.4.7-4.3.1
SUSE Linux Enterprise Software Development Kit 12 SP5
ppp-devel-2.4.7-4.3.1
SUSE OpenStack Cloud 7
ppp-2.4.7-4.3.1
SUSE OpenStack Cloud 8
ppp-2.4.7-4.3.1
SUSE OpenStack Cloud Crowbar 8
ppp-2.4.7-4.3.1

Описание

eap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.


Затронутые продукты
HPE Helion OpenStack 8:ppp-2.4.7-4.3.1
SUSE Enterprise Storage 5:ppp-2.4.7-4.3.1
SUSE Linux Enterprise Desktop 12 SP4:ppp-2.4.7-4.3.1
SUSE Linux Enterprise Server 12 SP1-LTSS:ppp-2.4.7-4.3.1

Ссылки
Уязвимость SUSE-SU-2020:0490-1