Описание
Security update for libssh2_org
This update for libssh2_org fixes the following issues:
- CVE-2020-22218: Fixed a bug in _libssh2_packet_add() which allows to access out of bounds memory. (bsc#1214527)
Список пакетов
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-Azure
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-BYOS-GCE
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-EC2-HVM
libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-GCE
libssh2-1-1.9.0-150000.4.16.1
SUSE Enterprise Storage 7
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Enterprise Storage 7.1
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.1
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.2
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.3
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Micro 5.4
libssh2-1-1.9.0-150000.4.16.1
SUSE Linux Enterprise Module for Basesystem 15 SP4
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Module for Basesystem 15 SP5
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP1-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP2-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server 15 SP3-LTSS
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Manager Proxy 4.2
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
SUSE Manager Server 4.2
libssh2-1-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
openSUSE Leap 15.4
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
openSUSE Leap 15.5
libssh2-1-1.9.0-150000.4.16.1
libssh2-1-32bit-1.9.0-150000.4.16.1
libssh2-devel-1.9.0-150000.4.16.1
Ссылки
- Link for SUSE-SU-2023:3555-1
- E-Mail link for SUSE-SU-2023:3555-1
- SUSE Security Ratings
- SUSE Bug 1214527
- SUSE CVE CVE-2020-22218 page
Описание
An issue was discovered in function _libssh2_packet_add in libssh2 1.10.0 allows attackers to access out of bounds memory.
Затронутые продукты
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production:libssh2-1-1.9.0-150000.4.16.1
Ссылки
- CVE-2020-22218
- SUSE Bug 1214527
- SUSE Bug 1217508
- SUSE Bug 1218318
- SUSE Bug 1218349
- SUSE Bug 1221580