Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2024:1365-1

Опубликовано: 22 апр. 2024
Источник: suse-cvrf

Описание

Security update for apache-commons-configuration2

This update for apache-commons-configuration2 fixes the following issues:

  • CVE-2024-29131: Fixed StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator() (bsc#1221797).
  • CVE-2024-29133: Fixed StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree (bsc#1221793).

Список пакетов

SUSE Enterprise Storage 7.1
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Module for Development Tools 15 SP5
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP2-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP3-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server 15 SP4-LTSS
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
apache-commons-configuration2-2.10.1-150200.5.8.1
openSUSE Leap 15.5
apache-commons-configuration2-2.10.1-150200.5.8.1
apache-commons-configuration2-javadoc-2.10.1-150200.5.8.1

Описание

Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.


Затронутые продукты
SUSE Enterprise Storage 7.1:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:apache-commons-configuration2-2.10.1-150200.5.8.1

Ссылки

Описание

Out-of-bounds Write vulnerability in Apache Commons Configuration.This issue affects Apache Commons Configuration: from 2.0 before 2.10.1. Users are recommended to upgrade to version 2.10.1, which fixes the issue.


Затронутые продукты
SUSE Enterprise Storage 7.1:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:apache-commons-configuration2-2.10.1-150200.5.8.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:apache-commons-configuration2-2.10.1-150200.5.8.1

Ссылки
Уязвимость SUSE-SU-2024:1365-1