Oval Definition:oval:org.opensuse.security:def:56391
Revision Date:2020-12-01Version:1
Title:Security update for curl (Moderate)
Description:

This update for curl fixes the following issues:

Following security issues were fixed:

- CVE-2018-1000120: A buffer overflow exists in the FTP URL handling that allowed an attacker to cause a denial of service or possible code execution (bsc#1084521). - CVE-2018-1000121: A NULL pointer dereference exists in the LDAP code that allowed an attacker to cause a denial of service (bsc#1084524). - CVE-2018-1000122: A buffer over-read exists in the RTSP+RTP handling code that allowed an attacker to cause a denial of service or information leakage (bsc#1084532).
Family:unixClass:patch
Status:Reference(s):1027593
1051791
1056421
1056562
1056621
1056622
1057511
1060427
1060877
1063008
1064569
1064580
1064583
1084521
1084524
1084532
1094161
1118319
1118320
1153108
1156334
854343
968483
975729
987527
989755
CVE-2008-0928
CVE-2008-1945
CVE-2008-2382
CVE-2008-3825
CVE-2008-4539
CVE-2009-0186
CVE-2009-1384
CVE-2009-2911
CVE-2009-3939
CVE-2009-4026
CVE-2009-4027
CVE-2009-4131
CVE-2009-4138
CVE-2009-4273
CVE-2009-4536
CVE-2009-4538
CVE-2010-0411
CVE-2010-0412
CVE-2010-1146
CVE-2010-1436
CVE-2010-1641
CVE-2010-2066
CVE-2010-2942
CVE-2010-2954
CVE-2010-2955
CVE-2010-3081
CVE-2010-3296
CVE-2010-3297
CVE-2010-3298
CVE-2010-3301
CVE-2010-3310
CVE-2011-0712
CVE-2011-1020
CVE-2011-1577
CVE-2011-2203
CVE-2011-2483
CVE-2011-2696
CVE-2012-0056
CVE-2012-2372
CVE-2012-3515
CVE-2013-0160
CVE-2013-0231
CVE-2013-0913
CVE-2013-1989
CVE-2013-2066
CVE-2013-2850
CVE-2013-4148
CVE-2013-4149
CVE-2013-4150
CVE-2013-4151
CVE-2013-4526
CVE-2013-4527
CVE-2013-4529
CVE-2013-4530
CVE-2013-4531
CVE-2013-4533
CVE-2013-4534
CVE-2013-4535
CVE-2013-4536
CVE-2013-4537
CVE-2013-4538
CVE-2013-4539
CVE-2013-4540
CVE-2013-4541
CVE-2013-4542
CVE-2013-4544
CVE-2013-4587
CVE-2013-6367
CVE-2013-6368
CVE-2013-6376
CVE-2013-6399
CVE-2013-6405
CVE-2014-00691
CVE-2014-0102
CVE-2014-0131
CVE-2014-0142
CVE-2014-0143
CVE-2014-0144
CVE-2014-0145
CVE-2014-0146
CVE-2014-0147
CVE-2014-0150
CVE-2014-0182
CVE-2014-0196
CVE-2014-0222
CVE-2014-0223
CVE-2014-2523
CVE-2014-2568
CVE-2014-3185
CVE-2014-3461
CVE-2014-3534
CVE-2014-3610
CVE-2014-3611
CVE-2014-3640
CVE-2014-3647
CVE-2014-3673
CVE-2014-3687
CVE-2014-3690
CVE-2014-3917
CVE-2014-3940
CVE-2014-4171
CVE-2014-4608
CVE-2014-4652
CVE-2014-4653
CVE-2014-4654
CVE-2014-4655
CVE-2014-4656
CVE-2014-4699
CVE-2014-4943
CVE-2014-5045
CVE-2014-5077
CVE-2014-5206
CVE-2014-5207
CVE-2014-5471
CVE-2014-5472
CVE-2014-7822
CVE-2014-7826
CVE-2014-7840
CVE-2014-7841
CVE-2014-8086
CVE-2014-8106
CVE-2014-8133
CVE-2014-8159
CVE-2014-8160
CVE-2014-8559
CVE-2014-8709
CVE-2014-9090
CVE-2014-9419
CVE-2014-9420
CVE-2014-9496
CVE-2014-9584
CVE-2014-9585
CVE-2014-9728
CVE-2014-9729
CVE-2014-9730
CVE-2014-9731
CVE-2015-0272
CVE-2015-0777
CVE-2015-1465
CVE-2015-1779
CVE-2015-1805
CVE-2015-2041
CVE-2015-2042
CVE-2015-2150
CVE-2015-2666
CVE-2015-2830
CVE-2015-2922
CVE-2015-3209
CVE-2015-3212
CVE-2015-3331
CVE-2015-3332
CVE-2015-3339
CVE-2015-3456
CVE-2015-3636
CVE-2015-4036
CVE-2015-4037
CVE-2015-4167
CVE-2015-4692
CVE-2015-5154
CVE-2015-5156
CVE-2015-5157
CVE-2015-5225
CVE-2015-5278
CVE-2015-5279
CVE-2015-5283
CVE-2015-5307
CVE-2015-5364
CVE-2015-5366
CVE-2015-5745
CVE-2015-6252
CVE-2015-6496
CVE-2015-6815
CVE-2015-6855
CVE-2015-6937
CVE-2015-7295
CVE-2015-7512
CVE-2015-7549
CVE-2015-7613
CVE-2015-8104
CVE-2015-8345
CVE-2015-8504
CVE-2015-8558
CVE-2015-8567
CVE-2015-8568
CVE-2015-8613
CVE-2015-8619
CVE-2015-8743
CVE-2015-8744
CVE-2015-8745
CVE-2016-10507
CVE-2016-1568
CVE-2016-1714
CVE-2016-1922
CVE-2016-1981
CVE-2016-2198
CVE-2016-3710
CVE-2016-3712
CVE-2016-4002
CVE-2016-4020
CVE-2016-4439
CVE-2016-4441
CVE-2016-4453
CVE-2016-4454
CVE-2016-4952
CVE-2016-4964
CVE-2016-5008
CVE-2016-5105
CVE-2016-5106
CVE-2016-5107
CVE-2016-5126
CVE-2016-5238
CVE-2016-5337
CVE-2016-5338
CVE-2016-5403
CVE-2016-6351
CVE-2016-6490
CVE-2016-6833
CVE-2016-6836
CVE-2016-6888
CVE-2016-7116
CVE-2016-7155
CVE-2016-7156
CVE-2016-7157
CVE-2017-12132
CVE-2017-12166
CVE-2017-14039
CVE-2017-14040
CVE-2017-14041
CVE-2017-14164
CVE-2017-14746
CVE-2017-15275
CVE-2017-15670
CVE-2017-15671
CVE-2017-15804
CVE-2018-1000120
CVE-2018-1000121
CVE-2018-1000122
CVE-2018-11236
CVE-2018-9568
CVE-2019-10220
CVE-2019-15917
SUSE-SU-2016:2053-1
SUSE-SU-2017:2649-1
SUSE-SU-2017:2839-1
SUSE-SU-2017:3086-1
SUSE-SU-2018:0769-1
SUSE-SU-2018:2185-1
SUSE-SU-2019:3233-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gtk-vnc-lang-0.7.2-lp150.1 is installed
  • OR libgtk-vnc-2_0-0-0.7.2-lp150.1 is installed
  • OR libgvnc-1_0-0-0.7.2-lp150.1 is installed
  • OR typelib-1_0-GVnc-1_0-0.7.2-lp150.1 is installed
  • OR typelib-1_0-GtkVnc-2_0-0.7.2-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • ImageMagick-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-config-7-SUSE-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-config-7-upstream-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-devel-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-devel-32bit-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-doc-7.0.7.34-lp151.7.9 is installed
  • OR ImageMagick-extra-7.0.7.34-lp151.7.9 is installed
  • OR libMagick++-7_Q16HDRI4-7.0.7.34-lp151.7.9 is installed
  • OR libMagick++-7_Q16HDRI4-32bit-7.0.7.34-lp151.7.9 is installed
  • OR libMagick++-devel-7.0.7.34-lp151.7.9 is installed
  • OR libMagick++-devel-32bit-7.0.7.34-lp151.7.9 is installed
  • OR libMagickCore-7_Q16HDRI6-7.0.7.34-lp151.7.9 is installed
  • OR libMagickCore-7_Q16HDRI6-32bit-7.0.7.34-lp151.7.9 is installed
  • OR libMagickWand-7_Q16HDRI6-7.0.7.34-lp151.7.9 is installed
  • OR libMagickWand-7_Q16HDRI6-32bit-7.0.7.34-lp151.7.9 is installed
  • OR perl-PerlMagick-7.0.7.34-lp151.7.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • curl-7.37.0-37.17 is installed
  • OR libcurl4-7.37.0-37.17 is installed
  • OR libcurl4-32bit-7.37.0-37.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libopenjp2-7-2.1.0-4.6 is installed
  • OR openjpeg2-2.1.0-4.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • kernel-default-3.12.49-11 is installed
  • OR kernel-default-base-3.12.49-11 is installed
  • OR kernel-default-devel-3.12.49-11 is installed
  • OR kernel-default-man-3.12.49-11 is installed
  • OR kernel-devel-3.12.49-11 is installed
  • OR kernel-macros-3.12.49-11 is installed
  • OR kernel-source-3.12.49-11 is installed
  • OR kernel-syms-3.12.49-11 is installed
  • OR kernel-xen-3.12.49-11 is installed
  • OR kernel-xen-base-3.12.49-11 is installed
  • OR kernel-xen-devel-3.12.49-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • ctdb-4.2.4-28.24 is installed
  • OR libdcerpc-binding0-4.2.4-28.24 is installed
  • OR libdcerpc-binding0-32bit-4.2.4-28.24 is installed
  • OR libdcerpc0-4.2.4-28.24 is installed
  • OR libdcerpc0-32bit-4.2.4-28.24 is installed
  • OR libgensec0-4.2.4-28.24 is installed
  • OR libgensec0-32bit-4.2.4-28.24 is installed
  • OR libndr-krb5pac0-4.2.4-28.24 is installed
  • OR libndr-krb5pac0-32bit-4.2.4-28.24 is installed
  • OR libndr-nbt0-4.2.4-28.24 is installed
  • OR libndr-nbt0-32bit-4.2.4-28.24 is installed
  • OR libndr-standard0-4.2.4-28.24 is installed
  • OR libndr-standard0-32bit-4.2.4-28.24 is installed
  • OR libndr0-4.2.4-28.24 is installed
  • OR libndr0-32bit-4.2.4-28.24 is installed
  • OR libnetapi0-4.2.4-28.24 is installed
  • OR libnetapi0-32bit-4.2.4-28.24 is installed
  • OR libregistry0-4.2.4-28.24 is installed
  • OR libsamba-credentials0-4.2.4-28.24 is installed
  • OR libsamba-credentials0-32bit-4.2.4-28.24 is installed
  • OR libsamba-hostconfig0-4.2.4-28.24 is installed
  • OR libsamba-hostconfig0-32bit-4.2.4-28.24 is installed
  • OR libsamba-passdb0-4.2.4-28.24 is installed
  • OR libsamba-passdb0-32bit-4.2.4-28.24 is installed
  • OR libsamba-util0-4.2.4-28.24 is installed
  • OR libsamba-util0-32bit-4.2.4-28.24 is installed
  • OR libsamdb0-4.2.4-28.24 is installed
  • OR libsamdb0-32bit-4.2.4-28.24 is installed
  • OR libsmbclient-raw0-4.2.4-28.24 is installed
  • OR libsmbclient-raw0-32bit-4.2.4-28.24 is installed
  • OR libsmbclient0-4.2.4-28.24 is installed
  • OR libsmbclient0-32bit-4.2.4-28.24 is installed
  • OR libsmbconf0-4.2.4-28.24 is installed
  • OR libsmbconf0-32bit-4.2.4-28.24 is installed
  • OR libsmbldap0-4.2.4-28.24 is installed
  • OR libsmbldap0-32bit-4.2.4-28.24 is installed
  • OR libtevent-util0-4.2.4-28.24 is installed
  • OR libtevent-util0-32bit-4.2.4-28.24 is installed
  • OR libwbclient0-4.2.4-28.24 is installed
  • OR libwbclient0-32bit-4.2.4-28.24 is installed
  • OR samba-4.2.4-28.24 is installed
  • OR samba-32bit-4.2.4-28.24 is installed
  • OR samba-client-4.2.4-28.24 is installed
  • OR samba-client-32bit-4.2.4-28.24 is installed
  • OR samba-doc-4.2.4-28.24 is installed
  • OR samba-libs-4.2.4-28.24 is installed
  • OR samba-libs-32bit-4.2.4-28.24 is installed
  • OR samba-winbind-4.2.4-28.24 is installed
  • OR samba-winbind-32bit-4.2.4-28.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libXv1-1.0.10-3 is installed
  • OR libXv1-32bit-1.0.10-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • xen-4.7.6_02-43.36 is installed
  • OR xen-doc-html-4.7.6_02-43.36 is installed
  • OR xen-libs-4.7.6_02-43.36 is installed
  • OR xen-libs-32bit-4.7.6_02-43.36 is installed
  • OR xen-tools-4.7.6_02-43.36 is installed
  • OR xen-tools-domU-4.7.6_02-43.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.22.5-2.32 is installed
  • OR libwebkit2gtk-4_0-37-2.22.5-2.32 is installed
  • OR libwebkit2gtk3-lang-2.22.5-2.32 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.22.5-2.32 is installed
  • OR typelib-1_0-WebKit2-4_0-2.22.5-2.32 is installed
  • OR typelib-1_0-WebKit2WebExtension-4_0-2.22.5-2.32 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.22.5-2.32 is installed
  • OR webkit2gtk3-2.22.5-2.32 is installed
  • OR webkit2gtk3-devel-2.22.5-2.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_59-92_24-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_9-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND apache2-mod_jk-1.2.40-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • accountsservice-0.6.42-16.8 is installed
  • OR accountsservice-lang-0.6.42-16.8 is installed
  • OR libaccountsservice0-0.6.42-16.8 is installed
  • OR typelib-1_0-AccountsService-1_0-0.6.42-16.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cpp48-4.8.5-31.17 is installed
  • OR gcc48-4.8.5-31.17 is installed
  • OR gcc48-32bit-4.8.5-31.17 is installed
  • OR gcc48-c++-4.8.5-31.17 is installed
  • OR gcc48-info-4.8.5-31.17 is installed
  • OR gcc48-locale-4.8.5-31.17 is installed
  • OR libasan0-4.8.5-31.17 is installed
  • OR libasan0-32bit-4.8.5-31.17 is installed
  • OR libstdc++48-devel-4.8.5-31.17 is installed
  • OR libstdc++48-devel-32bit-4.8.5-31.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND conntrack-tools-1.4.2-5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.24.1-2.41 is installed
  • OR libwebkit2gtk-4_0-37-2.24.1-2.41 is installed
  • OR libwebkit2gtk3-lang-2.24.1-2.41 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.24.1-2.41 is installed
  • OR typelib-1_0-WebKit2-4_0-2.24.1-2.41 is installed
  • OR typelib-1_0-WebKit2WebExtension-4_0-2.24.1-2.41 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.24.1-2.41 is installed
  • OR webkit2gtk3-2.24.1-2.41 is installed
  • OR webkit2gtk3-devel-2.24.1-2.41 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.241-43.30 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • mariadb-10.2.29-3.22 is installed
  • OR mariadb-galera-10.2.29-3.22 is installed
  • BACK