Oval Definition:oval:org.opensuse.security:def:56853
Revision Date:2020-12-01Version:1
Title:Security update for curl (Important)
Description:

This update for curl fixes the following issues:

Security issues fixed:

- CVE-2019-3823: Fixed a heap out-of-bounds read in the code handling the end-of-response for SMTP (bsc#1123378). - CVE-2019-3822: Fixed a stack based buffer overflow in the function creating an outgoing NTLM type-3 message (bsc#1123377). - CVE-2018-16890: Fixed a heap buffer out-of-bounds read in the function handling incoming NTLM type-2 messages (bsc#1123371).
Family:unixClass:patch
Status:Reference(s):1000345
1000346
1001151
1002116
1002549
1002550
1002557
1003612
1003613
1003878
1003893
1003894
1004702
1004706
1004707
1005353
1005374
1005522
1005523
1005524
1005525
1005526
1005527
1005528
1006536
1006538
1007263
1007391
1007493
1007494
1007495
1007769
1008148
1017693
1019416
1024416
1027147
1045327
1054594
1057950
1091764
1096564
1097108
1097375
1099306
1115717
1123371
1123377
1123378
1125352
1129186
1156323
1156324
1156326
1156328
1156329
1162687
1162689
1162691
924519
936862
959888
968973
971965
972197
973031
973032
973033
973034
973036
973832
974629
988651
990460
993692
993707
994819
998516
CVE-2007-5970
CVE-2008-7247
CVE-2009-4019
CVE-2009-4028
CVE-2009-4030
CVE-2010-5298
CVE-2011-3146
CVE-2012-5615
CVE-2013-1881
CVE-2013-1976
CVE-2014-0195
CVE-2014-0198
CVE-2014-0221
CVE-2014-0224
CVE-2014-2494
CVE-2014-3470
CVE-2014-4207
CVE-2014-4258
CVE-2014-4260
CVE-2014-4274
CVE-2014-4287
CVE-2014-6463
CVE-2014-6464
CVE-2014-6469
CVE-2014-6474
CVE-2014-6478
CVE-2014-6484
CVE-2014-6489
CVE-2014-6491
CVE-2014-6494
CVE-2014-6495
CVE-2014-6496
CVE-2014-6500
CVE-2014-6505
CVE-2014-6507
CVE-2014-6520
CVE-2014-6530
CVE-2014-6551
CVE-2014-6555
CVE-2014-6559
CVE-2014-6564
CVE-2014-6568
CVE-2014-8964
CVE-2015-0374
CVE-2015-0381
CVE-2015-0382
CVE-2015-0391
CVE-2015-0411
CVE-2015-0432
CVE-2015-0433
CVE-2015-0441
CVE-2015-0499
CVE-2015-0501
CVE-2015-0505
CVE-2015-2325
CVE-2015-2326
CVE-2015-2568
CVE-2015-2571
CVE-2015-2573
CVE-2015-3152
CVE-2015-4792
CVE-2015-4802
CVE-2015-4807
CVE-2015-4815
CVE-2015-4826
CVE-2015-4830
CVE-2015-4836
CVE-2015-4858
CVE-2015-4861
CVE-2015-4870
CVE-2015-4913
CVE-2015-5370
CVE-2015-5969
CVE-2015-7575
CVE-2016-0505
CVE-2016-0546
CVE-2016-0596
CVE-2016-0597
CVE-2016-0598
CVE-2016-0600
CVE-2016-0606
CVE-2016-0608
CVE-2016-0609
CVE-2016-0616
CVE-2016-0640
CVE-2016-0641
CVE-2016-0642
CVE-2016-0643
CVE-2016-0644
CVE-2016-0646
CVE-2016-0647
CVE-2016-0648
CVE-2016-0649
CVE-2016-0650
CVE-2016-0651
CVE-2016-0655
CVE-2016-0666
CVE-2016-0668
CVE-2016-10092
CVE-2016-10093
CVE-2016-10094
CVE-2016-2047
CVE-2016-2110
CVE-2016-2111
CVE-2016-2112
CVE-2016-2113
CVE-2016-2115
CVE-2016-2118
CVE-2016-3477
CVE-2016-3521
CVE-2016-3615
CVE-2016-5440
CVE-2016-5542
CVE-2016-5554
CVE-2016-5556
CVE-2016-5568
CVE-2016-5573
CVE-2016-5582
CVE-2016-5597
CVE-2016-6223
CVE-2016-6662
CVE-2016-6855
CVE-2016-7161
CVE-2016-7170
CVE-2016-7422
CVE-2016-7466
CVE-2016-7907
CVE-2016-7908
CVE-2016-7909
CVE-2016-7994
CVE-2016-7995
CVE-2016-8576
CVE-2016-8577
CVE-2016-8578
CVE-2016-8667
CVE-2016-8668
CVE-2016-8669
CVE-2016-8909
CVE-2016-8910
CVE-2016-9101
CVE-2016-9104
CVE-2016-9105
CVE-2016-9106
CVE-2017-1000251
CVE-2017-11600
CVE-2017-12944
CVE-2017-15274
CVE-2017-2619
CVE-2018-10853
CVE-2018-16890
CVE-2018-19210
CVE-2018-3646
CVE-2018-7167
CVE-2019-12523
CVE-2019-12526
CVE-2019-12528
CVE-2019-18676
CVE-2019-18677
CVE-2019-18678
CVE-2019-18679
CVE-2019-3822
CVE-2019-3823
CVE-2019-3838
CVE-2019-6454
CVE-2020-8449
CVE-2020-8450
CVE-2020-8517
SUSE-SU-2016:0149-1
SUSE-SU-2016:1024-1
SUSE-SU-2016:2827-1
SUSE-SU-2016:2879-1
SUSE-SU-2016:2887-1
SUSE-SU-2017:0859-1
SUSE-SU-2017:2783-1
SUSE-SU-2018:1892-1
SUSE-SU-2018:2367-1
SUSE-SU-2018:4191-1
SUSE-SU-2019:0249-1
SUSE-SU-2019:0425-1
SUSE-SU-2019:0719-1
SUSE-SU-2020:0661-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gdm-3.26.2.1-lp150.10 is installed
  • OR gdm-lang-3.26.2.1-lp150.10 is installed
  • OR gdmflexiserver-3.26.2.1-lp150.10 is installed
  • OR libgdm1-3.26.2.1-lp150.10 is installed
  • OR typelib-1_0-Gdm-1_0-3.26.2.1-lp150.10 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND transfig-3.2.6a-lp151.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • curl-7.37.0-37.34 is installed
  • OR libcurl4-7.37.0-37.34 is installed
  • OR libcurl4-32bit-7.37.0-37.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libtiff5-4.0.9-44.30 is installed
  • OR libtiff5-32bit-4.0.9-44.30 is installed
  • OR tiff-4.0.9-44.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • eog-3.10.2-2.3 is installed
  • OR eog-lang-3.10.2-2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_29-default-8-4 is installed
  • OR kgraft-patch-3_12_69-60_64_29-xen-8-4 is installed
  • OR kgraft-patch-SLE12-SP1_Update_12-8-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gdk-pixbuf-loader-rsvg-2.40.15-4 is installed
  • OR librsvg-2-2-2.40.15-4 is installed
  • OR librsvg-2-2-32bit-2.40.15-4 is installed
  • OR rsvg-view-2.40.15-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.15-30.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.39 is installed
  • OR libopenssl1_0_0-1.0.2j-60.39 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.39 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.39 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.39 is installed
  • OR openssl-1.0.2j-60.39 is installed
  • OR openssl-doc-1.0.2j-60.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND ucode-intel-20180425-13.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND libksba8-1.3.0-23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND mailman-2.1.17-3.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_178-94_91-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_25-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • xen-4.9.4_08-3.66 is installed
  • OR xen-doc-html-4.9.4_08-3.66 is installed
  • OR xen-libs-4.9.4_08-3.66 is installed
  • OR xen-libs-32bit-4.9.4_08-3.66 is installed
  • OR xen-tools-4.9.4_08-3.66 is installed
  • OR xen-tools-domU-4.9.4_08-3.66 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libvirt-4.0.0-6 is installed
  • OR libvirt-admin-4.0.0-6 is installed
  • OR libvirt-client-4.0.0-6 is installed
  • OR libvirt-daemon-4.0.0-6 is installed
  • OR libvirt-daemon-config-network-4.0.0-6 is installed
  • OR libvirt-daemon-config-nwfilter-4.0.0-6 is installed
  • OR libvirt-daemon-driver-interface-4.0.0-6 is installed
  • OR libvirt-daemon-driver-libxl-4.0.0-6 is installed
  • OR libvirt-daemon-driver-lxc-4.0.0-6 is installed
  • OR libvirt-daemon-driver-network-4.0.0-6 is installed
  • OR libvirt-daemon-driver-nodedev-4.0.0-6 is installed
  • OR libvirt-daemon-driver-nwfilter-4.0.0-6 is installed
  • OR libvirt-daemon-driver-qemu-4.0.0-6 is installed
  • OR libvirt-daemon-driver-secret-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-core-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-disk-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-iscsi-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-logical-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-mpath-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-rbd-4.0.0-6 is installed
  • OR libvirt-daemon-driver-storage-scsi-4.0.0-6 is installed
  • OR libvirt-daemon-hooks-4.0.0-6 is installed
  • OR libvirt-daemon-lxc-4.0.0-6 is installed
  • OR libvirt-daemon-qemu-4.0.0-6 is installed
  • OR libvirt-daemon-xen-4.0.0-6 is installed
  • OR libvirt-doc-4.0.0-6 is installed
  • OR libvirt-libs-4.0.0-6 is installed
  • OR libvirt-lock-sanlock-4.0.0-6 is installed
  • OR libvirt-nss-4.0.0-6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND nodejs6-6.14.3-11.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND binutils-2.32-9.33 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • mariadb-10.2.31-3.25 is installed
  • OR mariadb-galera-10.2.31-3.25 is installed
  • BACK