Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2016:2266-1

Опубликовано: 08 сент. 2016
Источник: suse-cvrf

Описание

Security update for libsrtp

This update for libsrtp fixes the following issues:

  • Update to 1.5.4:

    • Use BE byte ordering of RTCP trailer.
    • Allow zero length payload on unprotect.
  • Update to new upstream release 1.5.3

  • Maintenance release, including fix for CVE-2015-6360 boo#957376

Список пакетов

openSUSE Leap 42.1
libsrtp-1.5.4-6.1
libsrtp-devel-1.5.4-6.1
libsrtp1-1.5.4-6.1
libsrtp1-32bit-1.5.4-6.1

Описание

The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.


Затронутые продукты
openSUSE Leap 42.1:libsrtp-1.5.4-6.1
openSUSE Leap 42.1:libsrtp-devel-1.5.4-6.1
openSUSE Leap 42.1:libsrtp1-1.5.4-6.1
openSUSE Leap 42.1:libsrtp1-32bit-1.5.4-6.1

Ссылки