Oval Definition:oval:org.opensuse.security:def:57313
Revision Date:2020-12-01Version:1
Title:Security update for curl
Description:



This curl update fixes the following security issues:

* bnc#868627: wrong re-use of connections (CVE-2014-0138). * bnc#868629: IP address wildcard certificate validation (CVE-2014-0139). * bnc#870444: --insecure option inappropriately enforcing security safeguard.

Security Issue references:

* CVE-2014-0138 * CVE-2014-0139

Family:unixClass:patch
Status:Reference(s):1018870
1024724
1027053
1027057
1027353
1062937
1068386
1081164
1083125
1085447
1088268
1090036
1090368
1090646
1090869
1091396
1100973
1102775
1102840
1104199
1104367
1105010
1110785
1111122
1113769
1120843
1120885
1125580
1125931
1131543
1131587
1132374
1132472
1134848
1135281
1136424
1136446
1137586
1139073
1141035
1142214
1148987
1155988
1160039
1160903
1160904
1160905
1160906
1170601
1171863
1171864
1171866
774818
806990
816708
826486
832309
849123
855657
859840
860441
860593
863586
866130
866615
866864
866911
868627
868629
869055
869934
870161
870444
871797
876017
876055
876114
876590
879921
880344
880370
881051
881759
882317
882639
882804
882900
883376
883518
883724
884333
884582
884725
884767
885262
885382
885422
885509
886840
887082
887503
887608
887645
887680
888058
888105
888591
888607
888847
888849
888968
889061
889173
889451
889614
889727
890297
890426
890513
890526
891087
891259
891619
892200
892490
892723
893064
893496
893596
894200
964336
CVE-2010-4000
CVE-2013-1979
CVE-2014-0138
CVE-2014-0139
CVE-2014-1739
CVE-2014-2706
CVE-2014-4027
CVE-2014-4171
CVE-2014-4508
CVE-2014-4667
CVE-2014-4943
CVE-2014-5077
CVE-2014-5471
CVE-2014-5472
CVE-2017-0861
CVE-2017-12636
CVE-2017-13166
CVE-2017-15232
CVE-2017-5953
CVE-2017-6349
CVE-2017-6350
CVE-2018-1000199
CVE-2018-1087
CVE-2018-10915
CVE-2018-15473
CVE-2018-17972
CVE-2018-18065
CVE-2018-8007
CVE-2018-8781
CVE-2018-8897
CVE-2019-11135
CVE-2019-11139
CVE-2019-11190
CVE-2019-11477
CVE-2019-11478
CVE-2019-11479
CVE-2019-11833
CVE-2019-11884
CVE-2019-13627
CVE-2019-18902
CVE-2019-18903
CVE-2019-3846
CVE-2019-5489
CVE-2020-10543
CVE-2020-10878
CVE-2020-12723
CVE-2020-7216
CVE-2020-7217
SUSE-SU-2015:0962-1
SUSE-SU-2017:1712-1
SUSE-SU-2018:0373-1
SUSE-SU-2018:1259-1
SUSE-SU-2018:1516-1
SUSE-SU-2018:2578-1
SUSE-SU-2018:3447-1
SUSE-SU-2018:3909-1
SUSE-SU-2018:3910-1
SUSE-SU-2019:1533-1
SUSE-SU-2019:2510-1
SUSE-SU-2019:2988-1
SUSE-SU-2020:0358-1
SUSE-SU-2020:1662-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND binutils-2.29.1-lp150.4 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • tomcat-9.0.21-lp151.3.3 is installed
  • OR tomcat-admin-webapps-9.0.21-lp151.3.3 is installed
  • OR tomcat-docs-webapp-9.0.21-lp151.3.3 is installed
  • OR tomcat-el-3_0-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-embed-9.0.21-lp151.3.3 is installed
  • OR tomcat-javadoc-9.0.21-lp151.3.3 is installed
  • OR tomcat-jsp-2_3-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-jsvc-9.0.21-lp151.3.3 is installed
  • OR tomcat-lib-9.0.21-lp151.3.3 is installed
  • OR tomcat-servlet-4_0-api-9.0.21-lp151.3.3 is installed
  • OR tomcat-webapps-9.0.21-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • curl-7.19.7-1.38 is installed
  • OR libcurl4-7.19.7-1.38 is installed
  • OR libcurl4-32bit-7.19.7-1.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • libsnmp30-5.7.3-6.3 is installed
  • OR libsnmp30-32bit-5.7.3-6.3 is installed
  • OR net-snmp-5.7.3-6.3 is installed
  • OR perl-SNMP-5.7.3-6.3 is installed
  • OR snmp-mibs-5.7.3-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gnome-shell-3.20.4-70 is installed
  • OR gnome-shell-browser-plugin-3.20.4-70 is installed
  • OR gnome-shell-lang-3.20.4-70 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • kernel-default-4.4.121-92.92 is installed
  • OR kernel-default-base-4.4.121-92.92 is installed
  • OR kernel-default-devel-4.4.121-92.92 is installed
  • OR kernel-devel-4.4.121-92.92 is installed
  • OR kernel-macros-4.4.121-92.92 is installed
  • OR kernel-source-4.4.121-92.92 is installed
  • OR kernel-syms-4.4.121-92.92 is installed
  • OR kgraft-patch-4_4_121-92_92-default-1-3.7 is installed
  • OR kgraft-patch-SLE12-SP2_Update_24-1-3.7 is installed
  • OR lttng-modules-2.7.1-9.4 is installed
  • OR lttng-modules-kmp-default-2.7.1_k4.4.121_92.92-9.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_90-92_50-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_15-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libwireshark8-2.2.7-47 is installed
  • OR libwiretap6-2.2.7-47 is installed
  • OR libwscodecs1-2.2.7-47 is installed
  • OR libwsutil7-2.2.7-47 is installed
  • OR wireshark-2.2.7-47 is installed
  • OR wireshark-gtk-2.2.7-47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND clamav-0.100.3-33.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND sudo-1.8.20p2-3.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND unzip-6.00-33.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bash-4.3-83.23 is installed
  • OR bash-doc-4.3-83.23 is installed
  • OR libreadline6-6.3-83.23 is installed
  • OR libreadline6-32bit-6.3-83.23 is installed
  • OR readline-doc-6.3-83.23 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND couchdb-1.7.2-2.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libmysqlclient18-10.0.40.1-29.32 is installed
  • OR mariadb-10.0.40.1-29.32 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-haml-4.0.6-3.3 is installed
  • OR rubygem-haml-4.0.6-3.3 is installed
  • BACK