Oval Definition:oval:org.opensuse.security:def:55435
Revision Date:2020-12-01Version:1
Title:Security update for cpio (Moderate)
Description:



This cpio security update fixes the following buffer overflow issue and two non security issues:

- fix an OOB write with cpio -i (bnc#907456) (CVE-2014-9112) - prevent cpio from extracting over a symlink (bnc#658010) - fix a truncation check in mt
Family:unixClass:patch
Status:Reference(s):1112142
1112143
1112144
1112146
1112147
1112148
1112152
1112153
1112852
1120813
1120943
1124194
1126325
1127458
1131595
1131955
1132657
1132879
1135247
1151178
1160770
658010
673532
903649
905118
907456
914309
915410
916549
929192
932483
936695
938746
943006
943010
945493
961642
961645
965902
977012
980670
CVE-2013-2186
CVE-2014-0050
CVE-2014-8767
CVE-2014-8768
CVE-2014-8769
CVE-2014-9112
CVE-2014-9140
CVE-2014-9512
CVE-2015-0261
CVE-2015-2153
CVE-2015-2154
CVE-2015-2155
CVE-2015-2170
CVE-2015-2221
CVE-2015-2222
CVE-2015-2305
CVE-2015-2668
CVE-2015-4000
CVE-2015-5352
CVE-2015-5600
CVE-2015-6563
CVE-2015-6564
CVE-2015-7511
CVE-2016-0777
CVE-2016-0778
CVE-2016-1602
CVE-2016-4049
CVE-2018-12389
CVE-2018-12390
CVE-2018-12392
CVE-2018-12393
CVE-2018-12395
CVE-2018-12396
CVE-2018-12397
CVE-2018-13785
CVE-2018-16435
CVE-2018-16838
CVE-2018-20030
CVE-2018-3136
CVE-2018-3139
CVE-2018-3149
CVE-2018-3169
CVE-2018-3180
CVE-2018-3183
CVE-2018-3214
CVE-2019-16239
CVE-2019-3840
CVE-2019-3886
CVE-2019-9278
SUSE-SU-2015:0882-2
SUSE-SU-2015:1581-1
SUSE-SU-2016:0120-1
SUSE-SU-2016:1089-1
SUSE-SU-2016:1482-1
SUSE-SU-2016:1507-1
SUSE-SU-2016:2151-1
SUSE-SU-2018:3749-2
SUSE-SU-2019:0057-1
SUSE-SU-2019:1042-1
SUSE-SU-2019:1480-1
SUSE-SU-2019:2744-1
SUSE-SU-2020:0457-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND chrony-3.2-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • bzip2-1.0.6-lp151.5.3 is installed
  • OR bzip2-doc-1.0.6-lp151.5.3 is installed
  • OR libbz2-1-1.0.6-lp151.5.3 is installed
  • OR libbz2-1-32bit-1.0.6-lp151.5.3 is installed
  • OR libbz2-devel-1.0.6-lp151.5.3 is installed
  • OR libbz2-devel-32bit-1.0.6-lp151.5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • openssh-6.2p2-0.21 is installed
  • OR openssh-askpass-6.2p2-0.21 is installed
  • OR openssh-askpass-gnome-6.2p2-0.21 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • openssh-6.6p1-16 is installed
  • OR openssh-askpass-gnome-6.6p1-16 is installed
  • OR openssh-helpers-6.6p1-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • cpio-2.11-29 is installed
  • OR cpio-lang-2.11-29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libvirt-3.3.0-5.30 is installed
  • OR libvirt-admin-3.3.0-5.30 is installed
  • OR libvirt-client-3.3.0-5.30 is installed
  • OR libvirt-daemon-3.3.0-5.30 is installed
  • OR libvirt-daemon-config-network-3.3.0-5.30 is installed
  • OR libvirt-daemon-config-nwfilter-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-interface-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-libxl-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-lxc-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-network-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-nodedev-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-nwfilter-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-qemu-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-secret-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-core-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-disk-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-iscsi-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-logical-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-mpath-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-rbd-3.3.0-5.30 is installed
  • OR libvirt-daemon-driver-storage-scsi-3.3.0-5.30 is installed
  • OR libvirt-daemon-lxc-3.3.0-5.30 is installed
  • OR libvirt-daemon-qemu-3.3.0-5.30 is installed
  • OR libvirt-daemon-xen-3.3.0-5.30 is installed
  • OR libvirt-doc-3.3.0-5.30 is installed
  • OR libvirt-libs-3.3.0-5.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • MozillaFirefox-60.3.0-109.50 is installed
  • OR MozillaFirefox-translations-common-60.3.0-109.50 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • jakarta-commons-fileupload-1.1.1-120 is installed
  • OR jakarta-commons-fileupload-javadoc-1.1.1-120 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • openvpn-2.3.8-16.17 is installed
  • OR openvpn-auth-pam-plugin-2.3.8-16.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • automake-1.13.4-6 is installed
  • OR m4-1.4.16-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • git-2.12.3-27.17 is installed
  • OR git-core-2.12.3-27.17 is installed
  • OR git-doc-2.12.3-27.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_90-92_50-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_15-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND apache2-mod_jk-1.2.40-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-68.9.0-109.123 is installed
  • OR MozillaFirefox-translations-common-68.9.0-109.123 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • tomcat-8.0.53-29.13 is installed
  • OR tomcat-admin-webapps-8.0.53-29.13 is installed
  • OR tomcat-docs-webapp-8.0.53-29.13 is installed
  • OR tomcat-el-3_0-api-8.0.53-29.13 is installed
  • OR tomcat-javadoc-8.0.53-29.13 is installed
  • OR tomcat-jsp-2_3-api-8.0.53-29.13 is installed
  • OR tomcat-lib-8.0.53-29.13 is installed
  • OR tomcat-servlet-3_1-api-8.0.53-29.13 is installed
  • OR tomcat-webapps-8.0.53-29.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • gdk-pixbuf-loader-rsvg-2.40.20-5.6 is installed
  • OR librsvg-2-2-2.40.20-5.6 is installed
  • OR librsvg-2-2-32bit-2.40.20-5.6 is installed
  • OR rsvg-view-2.40.20-5.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • MozillaFirefox-60.7.2-109.80 is installed
  • OR MozillaFirefox-translations-common-60.7.2-109.80 is installed
  • BACK