Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2018:3706-1

Опубликовано: 09 нояб. 2018
Источник: suse-cvrf

Описание

Security update for curl

This update for curl fixes the following issues:

  • CVE-2018-16839: A SASL password overflow via integer overflow was fixed which could lead to crashes (bsc#1112758)
  • CVE-2018-16840: A use-after-free in SASL handle close was fixed which could lead to crashes (bsc#1112758)
  • CVE-2018-16842: A Out-of-bounds Read in tool_msgs.c was fixed which could lead to crashes (bsc#1113660)

This update was imported from the SUSE:SLE-15:Update update project.

Список пакетов

openSUSE Leap 15.0
curl-7.60.0-lp150.2.15.1
curl-mini-7.60.0-lp150.2.15.1
libcurl-devel-7.60.0-lp150.2.15.1
libcurl-devel-32bit-7.60.0-lp150.2.15.1
libcurl-mini-devel-7.60.0-lp150.2.15.1
libcurl4-7.60.0-lp150.2.15.1
libcurl4-32bit-7.60.0-lp150.2.15.1
libcurl4-mini-7.60.0-lp150.2.15.1

Описание

Curl versions 7.33.0 through 7.61.1 are vulnerable to a buffer overrun in the SASL authentication code that may lead to denial of service.


Затронутые продукты
openSUSE Leap 15.0:curl-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:curl-mini-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-32bit-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-7.60.0-lp150.2.15.1

Ссылки

Описание

A heap use-after-free flaw was found in curl versions from 7.59.0 through 7.61.1 in the code related to closing an easy handle. When closing and cleaning up an 'easy' handle in the `Curl_close()` function, the library code first frees a struct (without nulling the pointer) and might then subsequently erroneously write to a struct field within that already freed struct.


Затронутые продукты
openSUSE Leap 15.0:curl-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:curl-mini-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-32bit-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-7.60.0-lp150.2.15.1

Ссылки

Описание

Curl versions 7.14.1 through 7.61.1 are vulnerable to a heap-based buffer over-read in the tool_msgs.c:voutf() function that may result in information exposure and denial of service.


Затронутые продукты
openSUSE Leap 15.0:curl-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:curl-mini-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-32bit-7.60.0-lp150.2.15.1
openSUSE Leap 15.0:libcurl-devel-7.60.0-lp150.2.15.1

Ссылки
Уязвимость openSUSE-SU-2018:3706-1