Описание
Security update for net-tools
This update for net-tools fixes the following issues:
- CVE-2024-58251: denial of service via terminal escape sequences (bsc#1254323).
Список пакетов
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
net-tools-1.60-765.20.1
Ссылки
- Link for SUSE-SU-2026:3222-1
- E-Mail link for SUSE-SU-2026:3222-1
- SUSE Security Ratings
- SUSE Bug 1254323
- SUSE CVE CVE-2024-58251 page
Описание
In netstat in BusyBox through 1.37.0, local users can launch of network application with an argv[0] containing an ANSI terminal escape sequence, leading to a denial of service (terminal locked up) when netstat is used by a victim.
Затронутые продукты
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:net-tools-1.60-765.20.1
Ссылки
- CVE-2024-58251
- SUSE Bug 1241700