Описание
Security update for obs-scm-bridge
This update for obs-scm-bridge fixes the following issues:
Updated to version 0.5.4:
- CVE-2024-22038: Fixed DoS attacks, information leaks with crafted Git repositories (bnc#1230469)
Список пакетов
SUSE Enterprise Storage 7.1
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Module for Development Tools 15 SP5
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Module for Development Tools 15 SP6
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server 15 SP2-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server 15 SP3-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server 15 SP4-LTSS
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
obs-scm-bridge-0.5.4-150100.3.6.1
openSUSE Leap 15.5
obs-scm-bridge-0.5.4-150100.3.6.1
openSUSE Leap 15.6
obs-scm-bridge-0.5.4-150100.3.6.1
Ссылки
- Link for SUSE-SU-2024:4212-1
- E-Mail link for SUSE-SU-2024:4212-1
- SUSE Security Ratings
- SUSE Bug 1230469
- SUSE CVE CVE-2024-22038 page
Описание
Various problems in obs-scm-bridge allows attackers that create specially crafted git repositories to leak information of cause denial of service.
Затронутые продукты
SUSE Enterprise Storage 7.1:obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS:obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS:obs-scm-bridge-0.5.4-150100.3.6.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:obs-scm-bridge-0.5.4-150100.3.6.1
Ссылки
- CVE-2024-22038
- SUSE Bug 1230469