Описание
Security update for icu
This update for icu fixes the following issues:
- CVE-2020-10531: Fixed a potential integer overflow in UnicodeString:doAppend (bsc#1166844).
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.1
icu-60.2-lp151.3.11.1
libicu-devel-60.2-lp151.3.11.1
libicu-devel-32bit-60.2-lp151.3.11.1
libicu-doc-60.2-lp151.3.11.1
libicu60_2-60.2-lp151.3.11.1
libicu60_2-32bit-60.2-lp151.3.11.1
libicu60_2-bedata-60.2-lp151.3.11.1
libicu60_2-ledata-60.2-lp151.3.11.1
Ссылки
- E-Mail link for openSUSE-SU-2020:0459-1
- SUSE Security Ratings
- SUSE Bug 1166844
- SUSE CVE CVE-2020-10531 page
Описание
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
Затронутые продукты
openSUSE Leap 15.1:icu-60.2-lp151.3.11.1
openSUSE Leap 15.1:libicu-devel-32bit-60.2-lp151.3.11.1
openSUSE Leap 15.1:libicu-devel-60.2-lp151.3.11.1
openSUSE Leap 15.1:libicu-doc-60.2-lp151.3.11.1
Ссылки
- CVE-2020-10531
- SUSE Bug 1166844
- SUSE Bug 1175778