Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2022:10241-1

Опубликовано: 10 дек. 2022
Источник: suse-cvrf

Описание

Security update for python-slixmpp

This update for python-slixmpp fixes the following issues:

  • CVE-2022-45197: Fixed certificate hostname validation (boo#1205433)

Список пакетов

SUSE Package Hub 15 SP3
python3-slixmpp-1.4.2-bp153.2.3.1
openSUSE Leap 15.3
python3-slixmpp-1.4.2-bp153.2.3.1

Описание

Slixmpp before 1.8.3 lacks SSL Certificate hostname validation in XMLStream, allowing an attacker to pose as any server in the eyes of Slixmpp.


Затронутые продукты
SUSE Package Hub 15 SP3:python3-slixmpp-1.4.2-bp153.2.3.1
openSUSE Leap 15.3:python3-slixmpp-1.4.2-bp153.2.3.1

Ссылки