Oval Definition:
oval:org.opensuse.security:def:202138380
Revision Date
:
2022-06-30
Version
:
1
Title
:
CVE-2021-38380
Description
:
Live555 through 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer over-read. An attacker can leverage this to launch a DoS attack.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
Mitre CVE-2021-38380
SUSE CVE-2021-38380
Platform(s)
:
openSUSE Leap 15.4
openSUSE Tumbleweed
Product(s)
:
Definition Synopsis
openSUSE Tumbleweed is installed
AND
Package Information
libBasicUsageEnvironment1-2021.08.23-1.2 is installed
OR
libUsageEnvironment3-2021.08.23-1.2 is installed
OR
libgroupsock30-2021.08.23-1.2 is installed
OR
libliveMedia97-2021.08.23-1.2 is installed
OR
live555-2021.08.23-1.2 is installed
OR
live555-devel-2021.08.23-1.2 is installed
Definition Synopsis
openSUSE Leap 15.4 is installed
AND
Package Information
libBasicUsageEnvironment1-2021.11.23-bp154.1.72 is installed
AND
libBasicUsageEnvironment1 is signed with openSUSE key
OR
libUsageEnvironment3-2021.11.23-bp154.1.72 is installed
AND
libUsageEnvironment3 is signed with openSUSE key
OR
libgroupsock30-2021.11.23-bp154.1.72 is installed
AND
libgroupsock30 is signed with openSUSE key
OR
libliveMedia102-2021.11.23-bp154.1.72 is installed
AND
libliveMedia102 is signed with openSUSE key
BACK