Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for curl (Moderate) |
Description: |
This update for curl fixes the following issues:
- An application that performs multiple requests with libcurl's multi API and sets the 'CURLOPT_CONNECT_ONLY' option, might in rare circumstances experience that when subsequently using the setup connect-only transfer, libcurl will pick and use the wrong connection and instead pick another one the application has created since then. [bsc#1175109, CVE-2020-8231]
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1106531 1166238 1171186 1175109 1177582 CVE-2007-5970 CVE-2008-7247 CVE-2009-0946 CVE-2009-2285 CVE-2009-2347 CVE-2009-4019 CVE-2009-4028 CVE-2009-4030 CVE-2010-0405 CVE-2010-2065 CVE-2010-2067 CVE-2010-2233 CVE-2010-2497 CVE-2010-2805 CVE-2010-3053 CVE-2010-3054 CVE-2010-3311 CVE-2010-3814 CVE-2010-4352 CVE-2010-4665 CVE-2010-5298 CVE-2011-0192 CVE-2011-0226 CVE-2011-1167 CVE-2011-3389 CVE-2011-4944 CVE-2012-0845 CVE-2012-1150 CVE-2012-1173 CVE-2012-1174 CVE-2012-2113 CVE-2012-2396 CVE-2012-2737 CVE-2012-3401 CVE-2012-3524 CVE-2012-4564 CVE-2012-5615 CVE-2012-5668 CVE-2012-5669 CVE-2012-5670 CVE-2013-1752 CVE-2013-1960 CVE-2013-1961 CVE-2013-1976 CVE-2013-2168 CVE-2013-4231 CVE-2013-4232 CVE-2013-4238 CVE-2013-4243 CVE-2013-4244 CVE-2013-4288 CVE-2014-0195 CVE-2014-0198 CVE-2014-0221 CVE-2014-0224 CVE-2014-2494 CVE-2014-2667 CVE-2014-3470 CVE-2014-3477 CVE-2014-3532 CVE-2014-3533 CVE-2014-3635 CVE-2014-3636 CVE-2014-3637 CVE-2014-3638 CVE-2014-3639 CVE-2014-3970 CVE-2014-4207 CVE-2014-4258 CVE-2014-4260 CVE-2014-4274 CVE-2014-4287 CVE-2014-4650 CVE-2014-6463 CVE-2014-6464 CVE-2014-6469 CVE-2014-6474 CVE-2014-6478 CVE-2014-6484 CVE-2014-6489 CVE-2014-6491 CVE-2014-6494 CVE-2014-6495 CVE-2014-6496 CVE-2014-6500 CVE-2014-6505 CVE-2014-6507 CVE-2014-6520 CVE-2014-6530 CVE-2014-6551 CVE-2014-6555 CVE-2014-6559 CVE-2014-6564 CVE-2014-6568 CVE-2014-7824 CVE-2014-8127 CVE-2014-8128 CVE-2014-8129 CVE-2014-8130 CVE-2014-8148 CVE-2014-8964 CVE-2014-9655 CVE-2015-0245 CVE-2015-0374 CVE-2015-0381 CVE-2015-0382 CVE-2015-0391 CVE-2015-0411 CVE-2015-0432 CVE-2015-0433 CVE-2015-0441 CVE-2015-0499 CVE-2015-0501 CVE-2015-0505 CVE-2015-1547 CVE-2015-2325 CVE-2015-2326 CVE-2015-2568 CVE-2015-2571 CVE-2015-2573 CVE-2015-3152 CVE-2015-4792 CVE-2015-4802 CVE-2015-4807 CVE-2015-4815 CVE-2015-4826 CVE-2015-4830 CVE-2015-4836 CVE-2015-4858 CVE-2015-4861 CVE-2015-4870 CVE-2015-4913 CVE-2015-5969 CVE-2015-7554 CVE-2015-8781 CVE-2015-8782 CVE-2015-8783 CVE-2016-0505 CVE-2016-0546 CVE-2016-0596 CVE-2016-0597 CVE-2016-0598 CVE-2016-0600 CVE-2016-0606 CVE-2016-0608 CVE-2016-0609 CVE-2016-0616 CVE-2016-0640 CVE-2016-0641 CVE-2016-0642 CVE-2016-0643 CVE-2016-0644 CVE-2016-0646 CVE-2016-0647 CVE-2016-0648 CVE-2016-0649 CVE-2016-0650 CVE-2016-0651 CVE-2016-0655 CVE-2016-0666 CVE-2016-0668 CVE-2016-10156 CVE-2016-2047 CVE-2016-3186 CVE-2016-3477 CVE-2016-3492 CVE-2016-3521 CVE-2016-3615 CVE-2016-5314 CVE-2016-5316 CVE-2016-5317 CVE-2016-5320 CVE-2016-5440 CVE-2016-5584 CVE-2016-5624 CVE-2016-5626 CVE-2016-5629 CVE-2016-5875 CVE-2016-6662 CVE-2016-6663 CVE-2016-6664 CVE-2016-7440 CVE-2016-7795 CVE-2016-8283 CVE-2017-15908 CVE-2017-18078 CVE-2017-3238 CVE-2017-3243 CVE-2017-3244 CVE-2017-3257 CVE-2017-3258 CVE-2017-3265 CVE-2017-3291 CVE-2017-3302 CVE-2017-3312 CVE-2017-3313 CVE-2017-3317 CVE-2017-3318 CVE-2017-5838 CVE-2017-9217 CVE-2017-9445 CVE-2018-1049 CVE-2018-16140 CVE-2019-20503 CVE-2020-12387 CVE-2020-12392 CVE-2020-12393 CVE-2020-12395 CVE-2020-12397 CVE-2020-13943 CVE-2020-6805 CVE-2020-6806 CVE-2020-6807 CVE-2020-6811 CVE-2020-6812 CVE-2020-6814 CVE-2020-6831 CVE-2020-8231 SUSE-SU-2019:1291-1 SUSE-SU-2020:0721-1 SUSE-SU-2020:1225-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
apparmor-abstractions-2.12-lp150.5 is installed
OR apparmor-docs-2.12-lp150.5 is installed
OR apparmor-parser-2.12-lp150.5 is installed
OR apparmor-parser-lang-2.12-lp150.5 is installed
OR apparmor-profiles-2.12-lp150.5 is installed
OR apparmor-utils-2.12-lp150.5 is installed
OR apparmor-utils-lang-2.12-lp150.5 is installed
OR perl-apparmor-2.12-lp150.5 is installed
OR python3-apparmor-2.12-lp150.5 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
libzstd-devel-1.4.2-lp151.3.3 is installed
OR libzstd-devel-static-1.4.2-lp151.3.3 is installed
OR libzstd1-1.4.2-lp151.3.3 is installed
OR libzstd1-32bit-1.4.2-lp151.3.3 is installed
OR zstd-1.4.2-lp151.3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND Package Information
coreutils-8.12-6.25.29 is installed
OR coreutils-lang-8.12-6.25.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
file-4.24-43.27 is installed
OR file-32bit-4.24-43.27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND ft2demos-2.5.3-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
bzip2-1.0.6-27 is installed
OR libbz2-1-1.0.6-27 is installed
OR libbz2-1-32bit-1.0.6-27 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
dbus-1-1.8.16-19 is installed
OR dbus-1-x11-1.8.16-19 is installed
OR libdbus-1-3-1.8.16-19 is installed
OR libdbus-1-3-32bit-1.8.16-19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
accountsservice-0.6.42-14 is installed
OR accountsservice-lang-0.6.42-14 is installed
OR libaccountsservice0-0.6.42-14 is installed
OR typelib-1_0-AccountsService-1_0-0.6.42-14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
gstreamer-1.8.3-9 is installed
OR gstreamer-lang-1.8.3-9 is installed
OR gstreamer-utils-1.8.3-9 is installed
OR libgstreamer-1_0-0-1.8.3-9 is installed
OR libgstreamer-1_0-0-32bit-1.8.3-9 is installed
OR typelib-1_0-Gst-1_0-1.8.3-9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
AND Package Information
curl-7.66.0-4.6 is installed
OR curl-mini-7.66.0-4.6 is installed
OR libcurl-devel-32bit-7.66.0-4.6 is installed
OR libcurl-mini-devel-7.66.0-4.6 is installed
OR libcurl4-mini-7.66.0-4.6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
guestfs-data-1.26.10-4 is installed
OR guestfs-tools-1.26.10-4 is installed
OR guestfsd-1.26.10-4 is installed
OR libguestfs0-1.26.10-4 is installed
OR perl-Sys-Guestfs-1.26.10-4 is installed
OR python-libguestfs-1.26.10-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND dnsmasq-2.78-18.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
xorg-x11-server-7.6_1.18.3-76.15 is installed
OR xorg-x11-server-extra-7.6_1.18.3-76.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
libpython3_4m1_0-3.4.6-25.29 is installed
OR python3-3.4.6-25.29 is installed
OR python3-base-3.4.6-25.29 is installed
OR python3-curses-3.4.6-25.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
MozillaFirefox-60.2.2esr-109.46 is installed
OR MozillaFirefox-branding-SLE-60-32.3 is installed
OR MozillaFirefox-devel-60.2.2esr-109.46 is installed
OR MozillaFirefox-translations-common-60.2.2esr-109.46 is installed
OR apache2-mod_nss-1.0.14-19.6 is installed
OR libfreebl3-3.36.4-58.15 is installed
OR libfreebl3-32bit-3.36.4-58.15 is installed
OR libfreebl3-hmac-3.36.4-58.15 is installed
OR libfreebl3-hmac-32bit-3.36.4-58.15 is installed
OR libsoftokn3-3.36.4-58.15 is installed
OR libsoftokn3-32bit-3.36.4-58.15 is installed
OR libsoftokn3-hmac-3.36.4-58.15 is installed
OR libsoftokn3-hmac-32bit-3.36.4-58.15 is installed
OR mozilla-nspr-4.19-19.3 is installed
OR mozilla-nspr-32bit-4.19-19.3 is installed
OR mozilla-nss-3.36.4-58.15 is installed
OR mozilla-nss-32bit-3.36.4-58.15 is installed
OR mozilla-nss-certs-3.36.4-58.15 is installed
OR mozilla-nss-certs-32bit-3.36.4-58.15 is installed
OR mozilla-nss-sysinit-3.36.4-58.15 is installed
OR mozilla-nss-sysinit-32bit-3.36.4-58.15 is installed
OR mozilla-nss-tools-3.36.4-58.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
xen-4.7.6_02-43.36 is installed
OR xen-doc-html-4.7.6_02-43.36 is installed
OR xen-libs-4.7.6_02-43.36 is installed
OR xen-libs-32bit-4.7.6_02-43.36 is installed
OR xen-tools-4.7.6_02-43.36 is installed
OR xen-tools-domU-4.7.6_02-43.36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND ant-1.9.4-1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
ibus-1.5.13-15.11 is installed
OR ibus-gtk-1.5.13-15.11 is installed
OR ibus-gtk3-1.5.13-15.11 is installed
OR ibus-lang-1.5.13-15.11 is installed
OR libibus-1_0-5-1.5.13-15.11 is installed
OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
kgraft-patch-4_4_162-94_72-default-6-2 is installed
OR kgraft-patch-SLE12-SP3_Update_22-6-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
kgraft-patch-4_4_156-94_61-default-7-2 is installed
OR kgraft-patch-SLE12-SP3_Update_19-7-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
libspice-server1-0.12.8-6 is installed
OR spice-0.12.8-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND hyper-v-7-7 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND transfig-3.2.6a-4.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND Package Information
MozillaThunderbird-68.8.0-3.80 is installed
OR MozillaThunderbird-translations-common-68.8.0-3.80 is installed
OR MozillaThunderbird-translations-other-68.8.0-3.80 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND python-keystonemiddleware-2.3.1-1 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
openstack-glance-13.0.1~a0~dev6-4.3 is installed
OR openstack-glance-api-13.0.1~a0~dev6-4.3 is installed
OR openstack-glance-doc-13.0.1~a0~dev6-4.3 is installed
OR openstack-glance-glare-13.0.1~a0~dev6-4.3 is installed
OR openstack-glance-registry-13.0.1~a0~dev6-4.3 is installed
OR python-glance-13.0.1~a0~dev6-4.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND Package Information
libpython3_4m1_0-3.4.6-25.29 is installed
OR python3-3.4.6-25.29 is installed
OR python3-base-3.4.6-25.29 is installed
OR python3-curses-3.4.6-25.29 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND nodejs6-6.14.4-11.18 is installed
|