Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2016:1314-1

Опубликовано: 17 мая 2016
Источник: suse-cvrf

Описание

Security update for quassel

This update for quassel fixes the following issues:

  • CVE-2016-4414: Denial of service vulnerability by unauthenticated clients (boo#978002)

Список пакетов

openSUSE Leap 42.1
quassel-0.12.2-10.1
quassel-base-0.12.2-10.1
quassel-client-0.12.2-10.1
quassel-core-0.12.2-10.1
quassel-mono-0.12.2-10.1

Описание

The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via invalid handshake data.


Затронутые продукты
openSUSE Leap 42.1:quassel-0.12.2-10.1
openSUSE Leap 42.1:quassel-base-0.12.2-10.1
openSUSE Leap 42.1:quassel-client-0.12.2-10.1
openSUSE Leap 42.1:quassel-core-0.12.2-10.1

Ссылки
Уязвимость openSUSE-SU-2016:1314-1