Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2022:0774-1

Опубликовано: 09 мар. 2022
Источник: suse-cvrf

Описание

Security update for tcpdump

This update for tcpdump fixes the following issues:

  • CVE-2018-16301: Fixed segfault when handling large files (bsc#1195825).

Список пакетов

Container suse/sle-micro/5.1/toolbox:latest
tcpdump-4.9.2-3.18.1
Container suse/sle-micro/5.2/toolbox:latest
tcpdump-4.9.2-3.18.1
Image SLES15-Azure-BYOS
tcpdump-4.9.2-3.18.1
Image SLES15-SAP-Azure-BYOS
tcpdump-4.9.2-3.18.1
Image SLES15-SAP-Azure-LI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SAP-Azure-VLI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-Azure-BYOS
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-Azure-HPC-BYOS
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-CHOST-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-CHOST-BYOS-EC2
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-CHOST-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAP-Azure-BYOS
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAPCAL-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAPCAL-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP1-SAPCAL-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-CHOST-BYOS-Aliyun
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-CHOST-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-CHOST-BYOS-EC2
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-CHOST-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-HPC-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-HPC-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Proxy-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-Manager-4-1-Server-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP2-SAP-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-CHOST-BYOS-Aliyun
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-CHOST-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-CHOST-BYOS-EC2
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-CHOST-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-CHOST-BYOS-SAP-CCloud
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-EC2-ECS-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-HPC-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-HPC-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-HPC-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-HPC-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-BYOS-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-BYOS-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-BYOS-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAP-GCE
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAPCAL-Azure
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAPCAL-EC2-HVM
tcpdump-4.9.2-3.18.1
Image SLES15-SP3-SAPCAL-GCE
tcpdump-4.9.2-3.18.1
SUSE Enterprise Storage 6
tcpdump-4.9.2-3.18.1
SUSE Enterprise Storage 7
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15 SP2-ESPOS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15-ESPOS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise High Performance Computing 15-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Module for Basesystem 15 SP3
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Real Time 15 SP2
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server 15 SP1-BCL
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server 15 SP1-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server 15 SP2-BCL
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server 15 SP2-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server 15-LTSS
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server for SAP Applications 15
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
tcpdump-4.9.2-3.18.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
tcpdump-4.9.2-3.18.1
SUSE Manager Proxy 4.1
tcpdump-4.9.2-3.18.1
SUSE Manager Retail Branch Server 4.1
tcpdump-4.9.2-3.18.1
SUSE Manager Server 4.1
tcpdump-4.9.2-3.18.1

Описание

The command-line argument parser in tcpdump before 4.99.0 has a buffer overflow in tcpdump.c:read_infile(). To trigger this vulnerability the attacker needs to create a 4GB file on the local filesystem and to specify the file name as the value of the -F command-line argument of tcpdump.


Затронутые продукты
Container suse/sle-micro/5.1/toolbox:latest:tcpdump-4.9.2-3.18.1
Container suse/sle-micro/5.2/toolbox:latest:tcpdump-4.9.2-3.18.1
Image SLES15-Azure-BYOS:tcpdump-4.9.2-3.18.1
Image SLES15-SAP-Azure-BYOS:tcpdump-4.9.2-3.18.1

Ссылки
Уязвимость SUSE-SU-2022:0774-1