Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:4543-1

Опубликовано: 24 нояб. 2023
Источник: suse-cvrf

Описание

Security update for xerces-c

This update for xerces-c fixes the following issues:

  • CVE-2023-37536: Fixed an integer overflow that could have led to a out-of-bounds memory accesses (bsc#1216156).

Список пакетов

SUSE Linux Enterprise Server 12 SP5
libxerces-c-3_1-3.1.1-13.9.1
libxerces-c-3_1-32bit-3.1.1-13.9.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libxerces-c-3_1-3.1.1-13.9.1
libxerces-c-3_1-32bit-3.1.1-13.9.1
SUSE Linux Enterprise Software Development Kit 12 SP5
libxerces-c-devel-3.1.1-13.9.1

Описание

An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.


Затронутые продукты
SUSE Linux Enterprise Server 12 SP5:libxerces-c-3_1-3.1.1-13.9.1
SUSE Linux Enterprise Server 12 SP5:libxerces-c-3_1-32bit-3.1.1-13.9.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5:libxerces-c-3_1-3.1.1-13.9.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5:libxerces-c-3_1-32bit-3.1.1-13.9.1

Ссылки