Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for curl (Important) |
Description: |
This update for curl fixes the following issues:
Security issues fixed:
- CVE-2019-3823: Fixed a heap out-of-bounds read in the code handling the end-of-response for SMTP (bsc#1123378). - CVE-2019-3822: Fixed a stack based buffer overflow in the function creating an outgoing NTLM type-3 message (bsc#1123377). - CVE-2018-16890: Fixed a heap buffer out-of-bounds read in the function handling incoming NTLM type-2 messages (bsc#1123371).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1051510 1054914 1055117 1061840 1065600 1065729 1071995 1082555 1098946 1104967 1109158 1113722 1114209 1114279 1114832 1118897 1118898 1118899 1119086 1120653 1120654 1121397 1121967 1122208 1123013 1123034 1123371 1123377 1123378 1124341 1124342 1127988 1128376 1128503 1128746 1130267 1131304 1133191 1134068 1136446 1136666 1136935 1137069 1137597 1137865 1137959 1140155 1140738 1141013 1142076 1142635 1142721 1142743 1146042 1146519 1146540 1146664 1148133 1148712 1148868 1149313 1149446 1149495 1149496 1149555 1149651 1150381 1150423 1151350 1151610 1151667 1151680 1151891 1151955 1152024 1152025 1152026 1152148 1152161 1152325 1152457 1152460 1152466 1152972 1152974 1152975 1155079 1155798 1156395 1157268 1170232 1171000 1171073 1171252 1171254 1171558 1171889 1172419 1172873 1173060 1173267 1174029 1174110 1174111 1174117 1174121 1174484 1174486 1175263 1175667 1175787 1175952 1175996 1175997 1175998 1175999 1176000 1176001 1176022 1176063 1176069 CVE-2017-18595 CVE-2018-1000877 CVE-2018-1000878 CVE-2018-11782 CVE-2018-12181 CVE-2018-12648 CVE-2018-16873 CVE-2018-16874 CVE-2018-16875 CVE-2018-16890 CVE-2019-0160 CVE-2019-0203 CVE-2019-1000019 CVE-2019-1000020 CVE-2019-11477 CVE-2019-11478 CVE-2019-11487 CVE-2019-13345 CVE-2019-14821 CVE-2019-15291 CVE-2019-18408 CVE-2019-18934 CVE-2019-3822 CVE-2019-3823 CVE-2019-3846 CVE-2019-5481 CVE-2019-5482 CVE-2019-5736 CVE-2019-6446 CVE-2019-6486 CVE-2019-9506 CVE-2020-12653 CVE-2020-12654 CVE-2020-12662 CVE-2020-12663 CVE-2020-13934 CVE-2020-13935 CVE-2020-14386 SUSE-SU-2019:0248-1 SUSE-SU-2019:0418-1 SUSE-SU-2019:0651-1 SUSE-SU-2019:0804-1 SUSE-SU-2019:1234-2 SUSE-SU-2019:1603-1 SUSE-SU-2019:2031-1 SUSE-SU-2019:2092-1 SUSE-SU-2019:2373-1 SUSE-SU-2019:2706-1 SUSE-SU-2019:3093-1 SUSE-SU-2020:1475-1 SUSE-SU-2020:2580-1
|
Platform(s): | SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for Basesystem 15 SUSE Linux Enterprise Module for Legacy Software 15 SUSE Linux Enterprise Module for Live Patching 15 SUSE Linux Enterprise Module for Live Patching 15 SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 SUSE Linux Enterprise Module for Public Cloud 15 SP2 SUSE Linux Enterprise Module for Server Applications 15 SUSE Linux Enterprise Module for Server Applications 15 SP1 SUSE Linux Enterprise Module for Web Scripting 15 SP1 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed AND Package Information
flash-player-11.2.202.418-0.3 is installed
OR flash-player-gnome-11.2.202.418-0.3 is installed
OR flash-player-kde4-11.2.202.418-0.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND Package Information
gnutls-2.4.1-24.39.60 is installed
OR libgnutls26-2.4.1-24.39.60 is installed
OR libgnutls26-32bit-2.4.1-24.39.60 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
libjbig2-2.0-12 is installed
OR libjbig2-32bit-2.0-12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
cpp48-4.8.5-24 is installed
OR gcc48-4.8.5-24 is installed
OR gcc48-32bit-4.8.5-24 is installed
OR gcc48-c++-4.8.5-24 is installed
OR gcc48-gij-4.8.5-24 is installed
OR gcc48-gij-32bit-4.8.5-24 is installed
OR gcc48-info-4.8.5-24 is installed
OR libasan0-4.8.5-24 is installed
OR libasan0-32bit-4.8.5-24 is installed
OR libgcj48-4.8.5-24 is installed
OR libgcj48-32bit-4.8.5-24 is installed
OR libgcj48-jar-4.8.5-24 is installed
OR libgcj_bc1-4.8.5-24 is installed
OR libstdc++48-devel-4.8.5-24 is installed
OR libstdc++48-devel-32bit-4.8.5-24 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND binutils-2.26.1-9.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
apparmor-docs-2.8.2-49 is installed
OR apparmor-parser-2.8.2-49 is installed
OR apparmor-profiles-2.8.2-49 is installed
OR apparmor-utils-2.8.2-49 is installed
OR libapparmor1-2.8.2-49 is installed
OR libapparmor1-32bit-2.8.2-49 is installed
OR pam_apparmor-2.8.2-49 is installed
OR pam_apparmor-32bit-2.8.2-49 is installed
OR perl-apparmor-2.8.2-49 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.181-27.26 is installed
OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 is installed
AND Package Information
curl-7.60.0-3.17 is installed
OR libcurl-devel-7.60.0-3.17 is installed
OR libcurl4-7.60.0-3.17 is installed
OR libcurl4-32bit-7.60.0-3.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Legacy Software 15 is installed
AND Package Information
kernel-default-4.12.14-150.38 is installed
OR reiserfs-kmp-default-4.12.14-150.38 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 is installed
AND Package Information
kernel-livepatch-4_12_14-150_14-default-2-2 is installed
OR kernel-livepatch-SLE15_Update_9-2-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
AND Package Information
kernel-livepatch-4_12_14-197_37-default-3-2 is installed
OR kernel-livepatch-SLE15-SP1_Update_10-3-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
AND Package Information
go1.11-1.11.5-1.9 is installed
OR go1.11-doc-1.11.5-1.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
containerd-1.2.5-5.13 is installed
OR containerd-ctr-1.2.5-5.13 is installed
OR containerd-test-1.2.5-5.13 is installed
OR docker-18.09.6_ce-6.17 is installed
OR docker-runc-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
OR docker-runc-test-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
OR docker-test-18.09.6_ce-6.17 is installed
OR docker-zsh-completion-18.09.6_ce-6.17 is installed
OR go-1.12-3.10 is installed
OR go-doc-1.12-3.10 is installed
OR go-race-1.12-3.10 is installed
OR go1.11-1.11.9-1.12 is installed
OR go1.11-doc-1.11.9-1.12 is installed
OR go1.11-race-1.11.9-1.12 is installed
OR go1.12-1.12.4-1.9 is installed
OR go1.12-doc-1.12.4-1.9 is installed
OR go1.12-race-1.12.4-1.9 is installed
OR golang-github-docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-4.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
AND Package Information
tomcat-9.0.36-3.6 is installed
OR tomcat-docs-webapp-9.0.36-3.6 is installed
OR tomcat-embed-9.0.36-3.6 is installed
OR tomcat-javadoc-9.0.36-3.6 is installed
OR tomcat-jsvc-9.0.36-3.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Public Cloud 15 SP2 is installed
AND Package Information
kernel-azure-5.3.18-18.18 is installed
OR kernel-azure-devel-5.3.18-18.18 is installed
OR kernel-devel-azure-5.3.18-18.18 is installed
OR kernel-source-azure-5.3.18-18.18 is installed
OR kernel-syms-azure-5.3.18-18.18 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 is installed
AND Package Information
ovmf-2017+git1510945757.b2662641d5-5.19 is installed
OR ovmf-tools-2017+git1510945757.b2662641d5-5.19 is installed
OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-5.19 is installed
OR qemu-uefi-aarch64-2017+git1510945757.b2662641d5-5.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
AND Package Information
subversion-1.10.6-3.6 is installed
OR subversion-server-1.10.6-3.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
AND Package Information
nodejs8-8.17.0-3.32 is installed
OR nodejs8-devel-8.17.0-3.32 is installed
OR nodejs8-docs-8.17.0-3.32 is installed
OR npm8-8.17.0-3.32 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
perl-Cyrus-IMAP-2.3.18-35 is installed
OR perl-Cyrus-SIEVE-managesieve-2.3.18-35 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_67-60_64_21-default-8-2 is installed
OR kgraft-patch-3_12_67-60_64_21-xen-8-2 is installed
OR kgraft-patch-SLE12-SP1_Update_10-8-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
colord-gtk-lang-0.1.26-6 is installed
OR libcolord-gtk1-0.1.26-6 is installed
OR libcolord2-1.3.3-10 is installed
OR libcolord2-32bit-1.3.3-10 is installed
OR libcolorhug2-1.3.3-10 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
ntp-4.2.8p11-64.5 is installed
OR ntp-doc-4.2.8p11-64.5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
git-2.12.3-27.14 is installed
OR git-core-2.12.3-27.14 is installed
OR git-doc-2.12.3-27.14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
qemu-2.6.2-41.46 is installed
OR qemu-block-curl-2.6.2-41.46 is installed
OR qemu-block-rbd-2.6.2-41.46 is installed
OR qemu-block-ssh-2.6.2-41.46 is installed
OR qemu-guest-agent-2.6.2-41.46 is installed
OR qemu-ipxe-1.0.0-41.46 is installed
OR qemu-kvm-2.6.2-41.46 is installed
OR qemu-lang-2.6.2-41.46 is installed
OR qemu-ppc-2.6.2-41.46 is installed
OR qemu-s390-2.6.2-41.46 is installed
OR qemu-seabios-1.9.1-41.46 is installed
OR qemu-sgabios-8-41.46 is installed
OR qemu-tools-2.6.2-41.46 is installed
OR qemu-vgabios-1.9.1-41.46 is installed
OR qemu-x86-2.6.2-41.46 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
libXi6-1.7.4-17 is installed
OR libXi6-32bit-1.7.4-17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
libmysqlclient18-10.0.40.2-29.35 is installed
OR libmysqlclient18-32bit-10.0.40.2-29.35 is installed
OR mariadb-10.0.40.2-29.35 is installed
OR mariadb-client-10.0.40.2-29.35 is installed
OR mariadb-errormessages-10.0.40.2-29.35 is installed
OR mariadb-tools-10.0.40.2-29.35 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
ibus-1.5.13-15.11 is installed
OR ibus-gtk-1.5.13-15.11 is installed
OR ibus-gtk3-1.5.13-15.11 is installed
OR ibus-lang-1.5.13-15.11 is installed
OR libibus-1_0-5-1.5.13-15.11 is installed
OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
jasper-1.900.14-195.15 is installed
OR libjasper1-1.900.14-195.15 is installed
OR libjasper1-32bit-1.900.14-195.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15-LTSS is installed
AND Package Information
libfreebl3-3.53-3.40 is installed
OR libfreebl3-32bit-3.53-3.40 is installed
OR libfreebl3-hmac-3.53-3.40 is installed
OR libfreebl3-hmac-32bit-3.53-3.40 is installed
OR libsoftokn3-3.53-3.40 is installed
OR libsoftokn3-32bit-3.53-3.40 is installed
OR libsoftokn3-hmac-3.53-3.40 is installed
OR libsoftokn3-hmac-32bit-3.53-3.40 is installed
OR mozilla-nspr-4.25-3.12 is installed
OR mozilla-nspr-32bit-4.25-3.12 is installed
OR mozilla-nspr-devel-4.25-3.12 is installed
OR mozilla-nss-3.53-3.40 is installed
OR mozilla-nss-32bit-3.53-3.40 is installed
OR mozilla-nss-certs-3.53-3.40 is installed
OR mozilla-nss-certs-32bit-3.53-3.40 is installed
OR mozilla-nss-devel-3.53-3.40 is installed
OR mozilla-nss-sysinit-3.53-3.40 is installed
OR mozilla-nss-tools-3.53-3.40 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 15 is installed
AND Package Information
rmt-server-2.5.7-3.31 is installed
OR rmt-server-config-2.5.7-3.31 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
ffmpeg-3.4.2-4.17 is installed
OR libavcodec-devel-3.4.2-4.17 is installed
OR libavformat-devel-3.4.2-4.17 is installed
OR libavformat57-3.4.2-4.17 is installed
OR libavresample-devel-3.4.2-4.17 is installed
OR libavresample3-3.4.2-4.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND Package Information
Mesa-dri-nouveau-18.3.2-34.9 is installed
OR Mesa-drivers-18.3.2-34.9 is installed
OR libXvMC_nouveau-18.3.2-34.9 is installed
OR libvdpau_nouveau-18.3.2-34.9 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND ntp-4.2.8p4-1 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
galera-3-25.3.23-8 is installed
OR galera-3-wsrep-provider-25.3.23-8 is installed
OR libmariadb3-3.0.3-1.3 is installed
OR mariadb-10.2.15-7 is installed
OR mariadb-client-10.2.15-7 is installed
OR mariadb-connector-c-3.0.3-1.3 is installed
OR mariadb-errormessages-10.2.15-7 is installed
OR mariadb-galera-10.2.15-7 is installed
OR mariadb-tools-10.2.15-7 is installed
OR ruby2.1-rubygem-mysql2-0.4.10-7 is installed
OR rubygem-mysql2-0.4.10-7 is installed
OR xtrabackup-2.4.10-5 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND Package Information
perl-5.18.2-12.20 is installed
OR perl-32bit-5.18.2-12.20 is installed
OR perl-base-5.18.2-12.20 is installed
OR perl-doc-5.18.2-12.20 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
libmariadb3-3.0.3-3.3 is installed
OR mariadb-10.2.15-4.3 is installed
OR mariadb-client-10.2.15-4.3 is installed
OR mariadb-connector-c-3.0.3-3.3 is installed
OR mariadb-errormessages-10.2.15-4.3 is installed
OR mariadb-galera-10.2.15-4.3 is installed
OR mariadb-tools-10.2.15-4.3 is installed
OR xtrabackup-2.4.10-4.3 is installed
|