Oval Definition:
oval:org.opensuse.security:def:202035471
Revision Date
:
2022-05-25
Version
:
1
Title
:
CVE-2020-35471
Description
:
Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet size larger than 1500.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
Mitre CVE-2020-35471
SUSE CVE-2020-35471
SUSE-CU-2021:50-1
SUSE-CU-2021:51-1
SUSE-SU-2021:0335-1
openSUSE-SU-2022:0065-1
Platform(s)
:
openSUSE Leap 15.3
SUSE CaaS Platform 4.5
Product(s)
:
Definition Synopsis
SUSE CaaS Platform 4.5 is installed
AND
Package Information
caasp-release-4.5.3-1.13.1 is installed
OR
skuba-2.1.13-3.15.7.2 is installed
OR
skuba-update-2.1.13-3.15.7.2 is installed
Definition Synopsis
openSUSE Leap 15.3 is installed
AND
Package Information
envoy-proxy-1.14.6-bp153.3.4.1 is installed
AND
envoy-proxy is signed with openSUSE key
OR
envoy-proxy-source-1.14.6-bp153.3.4.1 is installed
AND
envoy-proxy-source is signed with openSUSE key
BACK