Oval Definition:oval:com.redhat.rhsa:def:20182240
Revision Date:2018-07-23Version:635
Title:RHSA-2018:2240: openslp security update (Important)
Description:OpenSLP is an open source implementation of the Service Location Protocol (SLP) which is an Internet Engineering Task Force (IETF) standards track protocol and provides a framework to allow networking applications to discover the existence, location, and configuration of networked services in enterprise networks.

Security Fix(es):

  • openslp: Heap memory corruption in slpd/slpd_process.c allows denial of service or potentially code execution (CVE-2017-17833)

    For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2017-17833
    RHSA-2018:2240
    RHSA-2018:2240-00
    RHSA-2018:2240-01
    Platform(s):Red Hat Enterprise Linux 7
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 7 is installed
  • AND
  • openslp is earlier than 1:2.0.0-7.el7_5
  • AND openslp is signed with Red Hat redhatrelease2 key
  • openslp-devel is earlier than 1:2.0.0-7.el7_5
  • AND openslp-devel is signed with Red Hat redhatrelease2 key
  • openslp-server is earlier than 1:2.0.0-7.el7_5
  • AND openslp-server is signed with Red Hat redhatrelease2 key
  • BACK