Oval Definition:oval:org.opensuse.security:def:50469
Revision Date:2020-12-01Version:1
Title:Security update for curl (Important)
Description:

This update for curl fixes the following issues:

Security issues fixed:

- CVE-2019-3823: Fixed a heap out-of-bounds read in the code handling the end-of-response for SMTP (bsc#1123378). - CVE-2019-3822: Fixed a stack based buffer overflow in the function creating an outgoing NTLM type-3 message (bsc#1123377). - CVE-2018-16890: Fixed a heap buffer out-of-bounds read in the function handling incoming NTLM type-2 messages (bsc#1123371).
Family:unixClass:patch
Status:Reference(s):1051510
1054914
1055117
1061840
1065600
1065729
1071995
1082555
1098946
1104967
1109158
1113722
1114209
1114279
1114832
1118897
1118898
1118899
1119086
1120653
1120654
1121397
1121967
1122208
1123013
1123034
1123371
1123377
1123378
1124341
1124342
1127988
1128376
1128503
1128746
1130267
1131304
1133191
1134068
1136446
1136666
1136935
1137069
1137597
1137865
1137959
1140155
1140738
1141013
1142076
1142635
1142721
1142743
1146042
1146519
1146540
1146664
1148133
1148712
1148868
1149313
1149446
1149495
1149496
1149555
1149651
1150381
1150423
1151350
1151610
1151667
1151680
1151891
1151955
1152024
1152025
1152026
1152148
1152161
1152325
1152457
1152460
1152466
1152972
1152974
1152975
1155079
1155798
1156395
1157268
1170232
1171000
1171073
1171252
1171254
1171558
1171889
1172419
1172873
1173060
1173267
1174029
1174110
1174111
1174117
1174121
1174484
1174486
1175263
1175667
1175787
1175952
1175996
1175997
1175998
1175999
1176000
1176001
1176022
1176063
1176069
CVE-2017-18595
CVE-2018-1000877
CVE-2018-1000878
CVE-2018-11782
CVE-2018-12181
CVE-2018-12648
CVE-2018-16873
CVE-2018-16874
CVE-2018-16875
CVE-2018-16890
CVE-2019-0160
CVE-2019-0203
CVE-2019-1000019
CVE-2019-1000020
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-13345
CVE-2019-14821
CVE-2019-15291
CVE-2019-18408
CVE-2019-18934
CVE-2019-3822
CVE-2019-3823
CVE-2019-3846
CVE-2019-5481
CVE-2019-5482
CVE-2019-5736
CVE-2019-6446
CVE-2019-6486
CVE-2019-9506
CVE-2020-12653
CVE-2020-12654
CVE-2020-12662
CVE-2020-12663
CVE-2020-13934
CVE-2020-13935
CVE-2020-14386
SUSE-SU-2019:0248-1
SUSE-SU-2019:0418-1
SUSE-SU-2019:0651-1
SUSE-SU-2019:0804-1
SUSE-SU-2019:1234-2
SUSE-SU-2019:1603-1
SUSE-SU-2019:2031-1
SUSE-SU-2019:2092-1
SUSE-SU-2019:2373-1
SUSE-SU-2019:2706-1
SUSE-SU-2019:3093-1
SUSE-SU-2020:1475-1
SUSE-SU-2020:2580-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Basesystem 15
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Public Cloud 15 SP2
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • flash-player-11.2.202.418-0.3 is installed
  • OR flash-player-gnome-11.2.202.418-0.3 is installed
  • OR flash-player-kde4-11.2.202.418-0.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • gnutls-2.4.1-24.39.60 is installed
  • OR libgnutls26-2.4.1-24.39.60 is installed
  • OR libgnutls26-32bit-2.4.1-24.39.60 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libjbig2-2.0-12 is installed
  • OR libjbig2-32bit-2.0-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • cpp48-4.8.5-24 is installed
  • OR gcc48-4.8.5-24 is installed
  • OR gcc48-32bit-4.8.5-24 is installed
  • OR gcc48-c++-4.8.5-24 is installed
  • OR gcc48-gij-4.8.5-24 is installed
  • OR gcc48-gij-32bit-4.8.5-24 is installed
  • OR gcc48-info-4.8.5-24 is installed
  • OR libasan0-4.8.5-24 is installed
  • OR libasan0-32bit-4.8.5-24 is installed
  • OR libgcj48-4.8.5-24 is installed
  • OR libgcj48-32bit-4.8.5-24 is installed
  • OR libgcj48-jar-4.8.5-24 is installed
  • OR libgcj_bc1-4.8.5-24 is installed
  • OR libstdc++48-devel-4.8.5-24 is installed
  • OR libstdc++48-devel-32bit-4.8.5-24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND binutils-2.26.1-9.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • apparmor-docs-2.8.2-49 is installed
  • OR apparmor-parser-2.8.2-49 is installed
  • OR apparmor-profiles-2.8.2-49 is installed
  • OR apparmor-utils-2.8.2-49 is installed
  • OR libapparmor1-2.8.2-49 is installed
  • OR libapparmor1-32bit-2.8.2-49 is installed
  • OR pam_apparmor-2.8.2-49 is installed
  • OR pam_apparmor-32bit-2.8.2-49 is installed
  • OR perl-apparmor-2.8.2-49 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 is installed
  • AND Package Information
  • curl-7.60.0-3.17 is installed
  • OR libcurl-devel-7.60.0-3.17 is installed
  • OR libcurl4-7.60.0-3.17 is installed
  • OR libcurl4-32bit-7.60.0-3.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-150.38 is installed
  • OR reiserfs-kmp-default-4.12.14-150.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-150_14-default-2-2 is installed
  • OR kernel-livepatch-SLE15_Update_9-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_37-default-3-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_10-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
  • AND Package Information
  • go1.11-1.11.5-1.9 is installed
  • OR go1.11-doc-1.11.5-1.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • containerd-1.2.5-5.13 is installed
  • OR containerd-ctr-1.2.5-5.13 is installed
  • OR containerd-test-1.2.5-5.13 is installed
  • OR docker-18.09.6_ce-6.17 is installed
  • OR docker-runc-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
  • OR docker-runc-test-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
  • OR docker-test-18.09.6_ce-6.17 is installed
  • OR docker-zsh-completion-18.09.6_ce-6.17 is installed
  • OR go-1.12-3.10 is installed
  • OR go-doc-1.12-3.10 is installed
  • OR go-race-1.12-3.10 is installed
  • OR go1.11-1.11.9-1.12 is installed
  • OR go1.11-doc-1.11.9-1.12 is installed
  • OR go1.11-race-1.11.9-1.12 is installed
  • OR go1.12-1.12.4-1.9 is installed
  • OR go1.12-doc-1.12.4-1.9 is installed
  • OR go1.12-race-1.12.4-1.9 is installed
  • OR golang-github-docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-4.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • tomcat-9.0.36-3.6 is installed
  • OR tomcat-docs-webapp-9.0.36-3.6 is installed
  • OR tomcat-embed-9.0.36-3.6 is installed
  • OR tomcat-javadoc-9.0.36-3.6 is installed
  • OR tomcat-jsvc-9.0.36-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 15 SP2 is installed
  • AND Package Information
  • kernel-azure-5.3.18-18.18 is installed
  • OR kernel-azure-devel-5.3.18-18.18 is installed
  • OR kernel-devel-azure-5.3.18-18.18 is installed
  • OR kernel-source-azure-5.3.18-18.18 is installed
  • OR kernel-syms-azure-5.3.18-18.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • ovmf-2017+git1510945757.b2662641d5-5.19 is installed
  • OR ovmf-tools-2017+git1510945757.b2662641d5-5.19 is installed
  • OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-5.19 is installed
  • OR qemu-uefi-aarch64-2017+git1510945757.b2662641d5-5.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • subversion-1.10.6-3.6 is installed
  • OR subversion-server-1.10.6-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • nodejs8-8.17.0-3.32 is installed
  • OR nodejs8-devel-8.17.0-3.32 is installed
  • OR nodejs8-docs-8.17.0-3.32 is installed
  • OR npm8-8.17.0-3.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • perl-Cyrus-IMAP-2.3.18-35 is installed
  • OR perl-Cyrus-SIEVE-managesieve-2.3.18-35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_67-60_64_21-default-8-2 is installed
  • OR kgraft-patch-3_12_67-60_64_21-xen-8-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_10-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • colord-gtk-lang-0.1.26-6 is installed
  • OR libcolord-gtk1-0.1.26-6 is installed
  • OR libcolord2-1.3.3-10 is installed
  • OR libcolord2-32bit-1.3.3-10 is installed
  • OR libcolorhug2-1.3.3-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • ntp-4.2.8p11-64.5 is installed
  • OR ntp-doc-4.2.8p11-64.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • git-2.12.3-27.14 is installed
  • OR git-core-2.12.3-27.14 is installed
  • OR git-doc-2.12.3-27.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • qemu-2.6.2-41.46 is installed
  • OR qemu-block-curl-2.6.2-41.46 is installed
  • OR qemu-block-rbd-2.6.2-41.46 is installed
  • OR qemu-block-ssh-2.6.2-41.46 is installed
  • OR qemu-guest-agent-2.6.2-41.46 is installed
  • OR qemu-ipxe-1.0.0-41.46 is installed
  • OR qemu-kvm-2.6.2-41.46 is installed
  • OR qemu-lang-2.6.2-41.46 is installed
  • OR qemu-ppc-2.6.2-41.46 is installed
  • OR qemu-s390-2.6.2-41.46 is installed
  • OR qemu-seabios-1.9.1-41.46 is installed
  • OR qemu-sgabios-8-41.46 is installed
  • OR qemu-tools-2.6.2-41.46 is installed
  • OR qemu-vgabios-1.9.1-41.46 is installed
  • OR qemu-x86-2.6.2-41.46 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libXi6-1.7.4-17 is installed
  • OR libXi6-32bit-1.7.4-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libmysqlclient18-10.0.40.2-29.35 is installed
  • OR libmysqlclient18-32bit-10.0.40.2-29.35 is installed
  • OR mariadb-10.0.40.2-29.35 is installed
  • OR mariadb-client-10.0.40.2-29.35 is installed
  • OR mariadb-errormessages-10.0.40.2-29.35 is installed
  • OR mariadb-tools-10.0.40.2-29.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • jasper-1.900.14-195.15 is installed
  • OR libjasper1-1.900.14-195.15 is installed
  • OR libjasper1-32bit-1.900.14-195.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libfreebl3-3.53-3.40 is installed
  • OR libfreebl3-32bit-3.53-3.40 is installed
  • OR libfreebl3-hmac-3.53-3.40 is installed
  • OR libfreebl3-hmac-32bit-3.53-3.40 is installed
  • OR libsoftokn3-3.53-3.40 is installed
  • OR libsoftokn3-32bit-3.53-3.40 is installed
  • OR libsoftokn3-hmac-3.53-3.40 is installed
  • OR libsoftokn3-hmac-32bit-3.53-3.40 is installed
  • OR mozilla-nspr-4.25-3.12 is installed
  • OR mozilla-nspr-32bit-4.25-3.12 is installed
  • OR mozilla-nspr-devel-4.25-3.12 is installed
  • OR mozilla-nss-3.53-3.40 is installed
  • OR mozilla-nss-32bit-3.53-3.40 is installed
  • OR mozilla-nss-certs-3.53-3.40 is installed
  • OR mozilla-nss-certs-32bit-3.53-3.40 is installed
  • OR mozilla-nss-devel-3.53-3.40 is installed
  • OR mozilla-nss-sysinit-3.53-3.40 is installed
  • OR mozilla-nss-tools-3.53-3.40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • rmt-server-2.5.7-3.31 is installed
  • OR rmt-server-config-2.5.7-3.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.17 is installed
  • OR libavcodec-devel-3.4.2-4.17 is installed
  • OR libavformat-devel-3.4.2-4.17 is installed
  • OR libavformat57-3.4.2-4.17 is installed
  • OR libavresample-devel-3.4.2-4.17 is installed
  • OR libavresample3-3.4.2-4.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • Mesa-dri-nouveau-18.3.2-34.9 is installed
  • OR Mesa-drivers-18.3.2-34.9 is installed
  • OR libXvMC_nouveau-18.3.2-34.9 is installed
  • OR libvdpau_nouveau-18.3.2-34.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND ntp-4.2.8p4-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • galera-3-25.3.23-8 is installed
  • OR galera-3-wsrep-provider-25.3.23-8 is installed
  • OR libmariadb3-3.0.3-1.3 is installed
  • OR mariadb-10.2.15-7 is installed
  • OR mariadb-client-10.2.15-7 is installed
  • OR mariadb-connector-c-3.0.3-1.3 is installed
  • OR mariadb-errormessages-10.2.15-7 is installed
  • OR mariadb-galera-10.2.15-7 is installed
  • OR mariadb-tools-10.2.15-7 is installed
  • OR ruby2.1-rubygem-mysql2-0.4.10-7 is installed
  • OR rubygem-mysql2-0.4.10-7 is installed
  • OR xtrabackup-2.4.10-5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • perl-5.18.2-12.20 is installed
  • OR perl-32bit-5.18.2-12.20 is installed
  • OR perl-base-5.18.2-12.20 is installed
  • OR perl-doc-5.18.2-12.20 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libmariadb3-3.0.3-3.3 is installed
  • OR mariadb-10.2.15-4.3 is installed
  • OR mariadb-client-10.2.15-4.3 is installed
  • OR mariadb-connector-c-3.0.3-3.3 is installed
  • OR mariadb-errormessages-10.2.15-4.3 is installed
  • OR mariadb-galera-10.2.15-4.3 is installed
  • OR mariadb-tools-10.2.15-4.3 is installed
  • OR xtrabackup-2.4.10-4.3 is installed
  • BACK