Описание
Security update for keybase-client
This update for keybase-client fixes the following issues:
Changes in keybase-client:
- CVE-2026-39824: failure to reject ASCII-only Punycode-encoded labels
Список пакетов
openSUSE Leap 16.0
kbfs-6.6.3-bp160.2.1
kbfs-git-6.6.3-bp160.2.1
kbfs-tool-6.6.3-bp160.2.1
keybase-client-6.6.3-bp160.2.1
Ссылки
- SUSE Security Ratings
- SUSE CVE CVE-2026-39824 page
Описание
NewNTUnicodeString does not check for string length overflow. When provided with a string that overflows the maximum size of a NTUnicodeString (a 16-bit number of bytes), it returns a truncated string rather than an error.
Затронутые продукты
openSUSE Leap 16.0:kbfs-6.6.3-bp160.2.1
openSUSE Leap 16.0:kbfs-git-6.6.3-bp160.2.1
openSUSE Leap 16.0:kbfs-tool-6.6.3-bp160.2.1
openSUSE Leap 16.0:keybase-client-6.6.3-bp160.2.1
Ссылки
- CVE-2026-39824