Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2020:0247-1

Опубликовано: 27 фев. 2020
Источник: suse-cvrf

Описание

Security update for ipmitool

This update for ipmitool fixes the following security issue:

  • CVE-2020-5208: Fixed several buffer overflows (bsc#1163026).

This update was imported from the SUSE:SLE-15-SP1:Update update project.

Список пакетов

openSUSE Leap 15.1
ipmitool-1.8.18-lp151.4.3.1
ipmitool-bmc-snmp-proxy-1.8.18-lp151.4.3.1

Описание

It's been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especially dangerous if ipmitool is run as a privileged user. This problem is fixed in version 1.8.19.


Затронутые продукты
openSUSE Leap 15.1:ipmitool-1.8.18-lp151.4.3.1
openSUSE Leap 15.1:ipmitool-bmc-snmp-proxy-1.8.18-lp151.4.3.1

Ссылки