Oval Definition:oval:org.opensuse.security:def:119730
Revision Date:2022-08-24Version:1
Title:Security update for libtirpc (Important) (in QA)
Description:

This update for libtirpc fixes the following issues:

- CVE-2021-46828: Fixed an uncontrolled file descriptor consumption, which could be exploited by remote attackers to prevent applications using the library from accepting new connections (bsc#1201680).

Non-security fixes:

- Exclude ipv6 addresses in client protocol version 2 code (bsc#1200800) - Fix memory leak in params.r_addr assignement (bsc#1198752)

This patch is currently in QA and not yet available for download.
Family:unixClass:patch
Status:Reference(s):1198752
1200800
1201680
CVE-2021-46828
Platform(s):SUSE Linux Enterprise Server 15 SP2-LTSS
SUSE Linux Enterprise Server for SAP Applications 15 SP2
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 15 SP2-LTSS is installed
  • AND
  • libtirpc-devel-1.0.2-150000.3.18.1 is installed
  • OR libtirpc-netconfig-1.0.2-150000.3.18.1 is installed
  • OR libtirpc3-1.0.2-150000.3.18.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • AND
  • libtirpc-devel-1.0.2-150000.3.18.1 is installed
  • OR libtirpc-netconfig-1.0.2-150000.3.18.1 is installed
  • OR libtirpc3-1.0.2-150000.3.18.1 is installed
  • BACK