Описание
Security update for apache-commons-configuration2
This update for apache-commons-configuration2 fixes the following issues:
- CVE-2024-29131: Fixed StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator() (bsc#1221797).
- CVE-2024-29133: Fixed StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree (bsc#1221793).
Список пакетов
SUSE Enterprise Storage 7.1
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Module for Development Tools 15 SP5
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP2-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP3-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP4-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
apache-commons-configuration2-2.10.1-150200.5.8.1
openSUSE Leap 15.5
apache-commons-configuration2-2.10.1-150200.5.8.1
apache-commons-configuration2-javadoc-2.10.1-150200.5.8.1
Ссылки
- Link for SUSE-SU-2024:1365-1
- E-Mail link for SUSE-SU-2024:1365-1
- SUSE Security Ratings
- SUSE Bug 1221793
- SUSE Bug 1221797
- SUSE CVE CVE-2024-29131 page
- SUSE CVE CVE-2024-29133 page
Описание
Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.
Затронутые продукты
SUSE Enterprise Storage 7.1:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:apache-commons-configuration2-2.10.1-150200.5.8.1
Ссылки
- CVE-2024-29131
- SUSE Bug 1221797
Описание
Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.
Затронутые продукты
SUSE Enterprise Storage 7.1:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:apache-commons-configuration2-2.10.1-150200.5.8.1
Ссылки
- CVE-2024-29133
- SUSE Bug 1221793