Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:3555-1

Опубликовано: 08 сент. 2023
Источник: suse-cvrf

Описание

Security update for libssh2_org

This update for libssh2_org fixes the following issues:

  • CVE-2020-22218: Fixed a bug in _libssh2_packet_add() which allows to access out of bounds memory. (bsc#1214527)

Список пакетов

Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-Azure
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-GCE
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-EC2-HVM
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-GCE
libssh2-1-1.9.0-150000.4.16.1
SUSE Enterprise Storage 7
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Enterprise Storage 7.1
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.1
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.2
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.3
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.4
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Module for Basesystem 15 SP4
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Module for Basesystem 15 SP5
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP1-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP2-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP3-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Manager Proxy 4.2
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Manager Server 4.2
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
openSUSE Leap 15.4
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
openSUSE Leap 15.5
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1

Описание

An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory.


Затронутые продукты
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1

Ссылки