Oval Definition:oval:org.opensuse.security:def:202010772
Revision Date:2022-05-22Version:1
Title:CVE-2020-10772
Description:

An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2020-10772
SUSE CVE-2020-10772
Platform(s):SUSE CaaS Platform 4.0
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Manager Proxy 4.0
SUSE Manager Retail Branch Server 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • Release Information
  • SUSE CaaS Platform 4.0 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
  • AND Package Information
  • libunbound2 is affected
  • OR unbound-anchor is affected
  • OR unbound-devel is affected
  • Definition Synopsis
  • Release Information
  • SUSE Manager Proxy 4.0 is installed
  • OR SUSE Manager Retail Branch Server 4.0 is installed
  • OR SUSE Manager Server 4.0 is installed
  • AND unbound is affected
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
  • AND
  • libunbound2 is affected
  • OR unbound-anchor is affected
  • OR unbound-devel is affected
  • BACK