Описание
Security update for libsrtp
This update for libsrtp fixes the following issues:
-
Update to 1.5.4:
- Use BE byte ordering of RTCP trailer.
- Allow zero length payload on unprotect.
-
Update to new upstream release 1.5.3
- Maintenance release, including fix for CVE-2015-6360 boo#957376
Список пакетов
openSUSE Leap 42.1
libsrtp-1.5.4-6.1
libsrtp-devel-1.5.4-6.1
libsrtp1-1.5.4-6.1
libsrtp1-32bit-1.5.4-6.1
Ссылки
- E-Mail link for openSUSE-SU-2016:2266-1
- SUSE Security Ratings
Описание
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
Затронутые продукты
openSUSE Leap 42.1:libsrtp-1.5.4-6.1
openSUSE Leap 42.1:libsrtp-devel-1.5.4-6.1
openSUSE Leap 42.1:libsrtp1-1.5.4-6.1
openSUSE Leap 42.1:libsrtp1-32bit-1.5.4-6.1
Ссылки
- CVE-2015-6360
- SUSE Bug 957376