Oval Definition:oval:org.opensuse.security:def:20181160
Revision Date:2022-09-02Version:1
Title:CVE-2018-1160
Description:

Netatalk before 3.1.12 is vulnerable to an out of bounds write in dsi_opensess.c. This is due to lack of bounds checking on attacker controlled data. A remote unauthenticated attacker can leverage this vulnerability to achieve arbitrary code execution.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-1160
SUSE-SU-2018:4214-1
SUSE-SU-2018:4217-1
openSUSE-SU-2018:4287-1
Mitre CVE-2018-1160
SUSE CVE-2018-1160
SUSE-SU-2018:4214-1
SUSE-SU-2018:4217-1
openSUSE-SU-2018:4287-1
Platform(s):openSUSE Leap 42.3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Desktop 12 SP5
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Software Development Kit 12 SP5
SUSE Linux Enterprise Workstation Extension 12 SP3
SUSE Linux Enterprise Workstation Extension 12 SP4
SUSE Linux Enterprise Workstation Extension 12 SP5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND Package Information
  • netatalk-2.0.3-249.23.3 is installed
  • OR netatalk-devel-2.0.3-249.23.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • OR netatalk-devel-3.1.0-3.3 is installed
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • AND
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • Definition Synopsis
  • openSUSE Leap 42.3 is installed
  • AND Package Information
  • libatalk16-3.1.7-8.3 is installed
  • AND libatalk16 is signed with openSUSE key
  • OR
  • netatalk-3.1.7-8.3 is installed
  • AND netatalk is signed with openSUSE key
  • OR
  • netatalk-devel-3.1.7-8.3 is installed
  • AND netatalk-devel is signed with openSUSE key
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • AND Package Information
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP5 is installed
  • AND
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • OR netatalk-devel-3.1.0-3.3 is installed
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP5 is installed
  • AND
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP5 is installed
  • AND Package Information
  • libatalk12-3.1.0-3.3 is installed
  • OR netatalk-3.1.0-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND Package Information
  • netatalk-2.0.3-249.23.3.1 is installed
  • OR netatalk-devel-2.0.3-249.23.3.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP5 is installed
  • OR SUSE Linux Enterprise Server 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP5 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • OR SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Server 12 SP3 is installed
  • OR SUSE Linux Enterprise Server 12 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP3 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP5 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • OR netatalk-devel-3.1.0-3.3.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP5 is installed
  • OR SUSE Linux Enterprise Server 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP5 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Server 12 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP4 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • OR SUSE Linux Enterprise Server 12 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • OR SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND
  • libatalk12-3.1.0-3.3.1 is installed
  • OR netatalk-3.1.0-3.3.1 is installed
  • OR netatalk-devel-3.1.0-3.3.1 is installed
  • BACK