Oval Definition:oval:org.opensuse.security:def:20063121
Revision Date:2017-09-27Version:1
Title:CVE-2006-3121
Description:

The peel_netstring function in cl_netstring.c in the heartbeat subsystem in High-Availability Linux before 1.2.5, and 2.0 before 2.0.7, allows remote attackers to cause a denial of service (crash) via the length parameter in a heartbeat message.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2006-3121
Platform(s):Open Enterprise Server
SUSE LINUX 10.1
SUSE Linux Enterprise Server 10 SP1 for AMD64 and Intel EM64T
SUSE Linux Enterprise Server 10 SP1 for IBM POWER
SUSE Linux Enterprise Server 10 SP1 for IBM zSeries 64bit
SUSE Linux Enterprise Server 10 SP1 for IPF
SUSE Linux Enterprise Server 10 SP1 for x86
Product(s):
Definition Synopsis
  • sles10-sp1-online is installed
  • AND Package Information
  • drbd less than 0.7.22-42.11
  • OR heartbeat-cmpi less than 2.0.8-0.19
  • OR heartbeat-ldirectord less than 2.0.8-0.19
  • OR heartbeat-pils less than 2.0.8-0.19
  • OR heartbeat-stonith less than 2.0.8-0.19
  • OR heartbeat less than 2.0.8-0.19
  • OR ocfs2-tools less than 1.2.3-0.7
  • OR ocfs2console less than 1.2.3-0.7
  • BACK