Oval Definition:oval:org.opensuse.security:def:100148
Revision Date:2019-08-14Version:1
Title:Security update for live555 (Moderate)
Description:

This update for live555 fixes the following issues:

- CVE-2019-9215: Malformed headers could have lead to invalid memory access in the parseAuthorizationHeader function. (boo#1127341)

- CVE-2019-7314: Mishandled termination of an RTSP stream after RTP/RTCP-over-RTSP has been set up could have lead to a Use-After-Free error causing the RTSP server to crash or possibly have unspecified other impact. (boo#1124159)

- Update to version 2019.06.28, - Convert to dynamic libraries (boo#1121995): + Use make ilinux-with-shared-libraries: build the dynamic libs instead of the static one. + Use make install instead of a manual file copy script: this also reveals that we missed quite a bit of code to be installed before. + Split out shared library packages according the SLPP. - Use FAT LTO objects in order to provide proper static library.



This update was imported from the openSUSE:Leap:15.1:Update update project.
Family:unixClass:patch
Status:Reference(s):1121995
1124159
1127341
CVE-2019-7314
CVE-2019-9215
openSUSE-SU-2019:1880-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
SUSE Package Hub for SUSE Linux Enterprise 15 SP1
Product(s):
Definition Synopsis
  • SUSE Package Hub for SUSE Linux Enterprise 15 SP1 is installed
  • AND Package Information
  • libBasicUsageEnvironment1-2019.06.28-bp151.3.3.1 is installed
  • OR libUsageEnvironment3-2019.06.28-bp151.3.3.1 is installed
  • OR libgroupsock8-2019.06.28-bp151.3.3.1 is installed
  • OR libliveMedia66-2019.06.28-bp151.3.3.1 is installed
  • OR live555-2019.06.28-bp151.3.3.1 is installed
  • OR live555-devel-2019.06.28-bp151.3.3.1 is installed
  • BACK