Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2017:0259-1

Опубликовано: 23 янв. 2017
Источник: suse-cvrf

Описание

Security update for python3-sleekxmpp

This update for python3-sleekxmpp fixes the following issues:

Список пакетов

openSUSE Leap 42.2
python3-sleekxmpp-1.3.1-3.1

Описание

Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.


Затронутые продукты
openSUSE Leap 42.2:python3-sleekxmpp-1.3.1-3.1

Ссылки

Описание

MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which will also garner associated privileges, via crafted XMPP packets.


Затронутые продукты
openSUSE Leap 42.2:python3-sleekxmpp-1.3.1-3.1

Ссылки