Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2022:2057-1

Опубликовано: 13 июн. 2022
Источник: suse-cvrf

Описание

Security update for u-boot

This update for u-boot fixes the following issues:

  • A large buffer overflow could have lead to a denial of service in the IP Packet deframentation code. (CVE-2022-30552, bsc#1200363)
  • A Hole Descriptor Overwrite could have lead to an arbitrary out of bounds write primitive. (CVE-2022-30790, bsc#1200364)

Список пакетов

SUSE Enterprise Storage 6
u-boot-rpi3-2019.01-150100.7.13.1
u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS
u-boot-rpi3-2019.01-150100.7.13.1
u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
u-boot-rpi3-2019.01-150100.7.13.1
u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise Server 15 SP1-BCL
u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise Server 15 SP1-LTSS
u-boot-rpi3-2019.01-150100.7.13.1
u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
u-boot-tools-2019.01-150100.7.13.1

Описание

Das U-Boot 2022.01 has a Buffer Overflow.


Затронутые продукты
SUSE Enterprise Storage 6:u-boot-rpi3-2019.01-150100.7.13.1
SUSE Enterprise Storage 6:u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:u-boot-rpi3-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:u-boot-tools-2019.01-150100.7.13.1

Ссылки

Описание

Das U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2022-30552.


Затронутые продукты
SUSE Enterprise Storage 6:u-boot-rpi3-2019.01-150100.7.13.1
SUSE Enterprise Storage 6:u-boot-tools-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:u-boot-rpi3-2019.01-150100.7.13.1
SUSE Linux Enterprise High Performance Computing 15 SP1-ESPOS:u-boot-tools-2019.01-150100.7.13.1

Ссылки
Уязвимость SUSE-SU-2022:2057-1