Oval Definition:oval:org.opensuse.security:def:57359
Revision Date:2020-12-01Version:1
Title:Security update for glibc
Description:



This glibc update fixes a critical privilege escalation problem and two non-security issues:

* bnc#892073: An off-by-one error leading to a heap-based buffer overflow was found in __gconv_translit_find(). An exploit that targets the problem is publicly available. (CVE-2014-5119) * bnc#892065: setenv-alloca.patch: Avoid unbound alloca in setenv. * bnc#888347: printf-multibyte-format.patch: Don't parse %s format argument as multi-byte string.

Security Issues:

* CVE-2014-5119

Family:unixClass:patch
Status:Reference(s):1053431
1074171
1075608
1075737
1075738
1075739
1075748
1078431
1084604
1085207
1103098
1113231
1116717
1117275
1118595
1118596
1119493
1123156
1124729
1124734
1128378
1133191
1136446
1137597
1149294
1149295
1149296
1149297
1149298
1149299
1149303
1149304
1149324
1168994
1175626
1175656
888347
892065
892073
921070
CVE-2013-1989
CVE-2013-2066
CVE-2013-4566
CVE-2014-3566
CVE-2014-5119
CVE-2015-1782
CVE-2015-5244
CVE-2016-3099
CVE-2017-10053
CVE-2017-10067
CVE-2017-10074
CVE-2017-10078
CVE-2017-10081
CVE-2017-10087
CVE-2017-10089
CVE-2017-10090
CVE-2017-10096
CVE-2017-10101
CVE-2017-10102
CVE-2017-10105
CVE-2017-10107
CVE-2017-10108
CVE-2017-10109
CVE-2017-10110
CVE-2017-10111
CVE-2017-10115
CVE-2017-10116
CVE-2017-10125
CVE-2017-10243
CVE-2017-13672
CVE-2017-13673
CVE-2017-15132
CVE-2017-17935
CVE-2017-5715
CVE-2018-15518
CVE-2018-16872
CVE-2018-19364
CVE-2018-19489
CVE-2018-19873
CVE-2018-2562
CVE-2018-2562
CVE-2018-2612
CVE-2018-2612
CVE-2018-2622
CVE-2018-2622
CVE-2018-2640
CVE-2018-2640
CVE-2018-2665
CVE-2018-2665
CVE-2018-2668
CVE-2018-2668
CVE-2018-5334
CVE-2018-5335
CVE-2018-5336
CVE-2018-5391
CVE-2018-7858
CVE-2019-11477
CVE-2019-11478
CVE-2019-11487
CVE-2019-11740
CVE-2019-11742
CVE-2019-11743
CVE-2019-11744
CVE-2019-11746
CVE-2019-11752
CVE-2019-11753
CVE-2019-3846
CVE-2019-6778
CVE-2019-6974
CVE-2019-7221
CVE-2019-9213
CVE-2019-9812
CVE-2020-10713
SUSE-SU-2015:0439-1
SUSE-SU-2015:0676-1
SUSE-SU-2017:2263-1
SUSE-SU-2018:0191-1
SUSE-SU-2018:0466-1
SUSE-SU-2018:0697-1
SUSE-SU-2018:0708-1
SUSE-SU-2018:4183-1
SUSE-SU-2019:0489-1
SUSE-SU-2019:2436-1
SUSE-SU-2020:2628-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gnome-settings-daemon-3.26.2-lp150.5 is installed
  • OR gnome-settings-daemon-lang-3.26.2-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libopenssl-1_0_0-devel-1.0.2p-lp151.5.3 is installed
  • OR libopenssl-1_0_0-devel-32bit-1.0.2p-lp151.5.3 is installed
  • OR libopenssl1_0_0-1.0.2p-lp151.5.3 is installed
  • OR libopenssl1_0_0-32bit-1.0.2p-lp151.5.3 is installed
  • OR libopenssl1_0_0-hmac-1.0.2p-lp151.5.3 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2p-lp151.5.3 is installed
  • OR openssl-1_0_0-1.0.2p-lp151.5.3 is installed
  • OR openssl-1_0_0-cavs-1.0.2p-lp151.5.3 is installed
  • OR openssl-1_0_0-doc-1.0.2p-lp151.5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • glibc-2.11.3-17.72 is installed
  • OR glibc-32bit-2.11.3-17.72 is installed
  • OR glibc-devel-2.11.3-17.72 is installed
  • OR glibc-devel-32bit-2.11.3-17.72 is installed
  • OR glibc-i18ndata-2.11.3-17.72 is installed
  • OR glibc-locale-2.11.3-17.72 is installed
  • OR glibc-locale-32bit-2.11.3-17.72 is installed
  • OR nscd-2.11.3-17.72 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • libmysqlclient-devel-10.0.34-29.16 is installed
  • OR libmysqlclient18-10.0.34-29.16 is installed
  • OR libmysqlclient18-32bit-10.0.34-29.16 is installed
  • OR libmysqlclient_r18-10.0.34-29.16 is installed
  • OR libmysqld-devel-10.0.34-29.16 is installed
  • OR libmysqld18-10.0.34-29.16 is installed
  • OR mariadb-10.0.34-29.16 is installed
  • OR mariadb-client-10.0.34-29.16 is installed
  • OR mariadb-errormessages-10.0.34-29.16 is installed
  • OR mariadb-tools-10.0.34-29.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND apache2-mod_nss-1.0.14-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • openssh-7.2p2-74.25 is installed
  • OR openssh-askpass-gnome-7.2p2-74.25 is installed
  • OR openssh-fips-7.2p2-74.25 is installed
  • OR openssh-helpers-7.2p2-74.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-52.8.1esr-109.34 is installed
  • OR MozillaFirefox-devel-52.8.1esr-109.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • postgresql94-9.4.24-21.25 is installed
  • OR postgresql94-contrib-9.4.24-21.25 is installed
  • OR postgresql94-docs-9.4.24-21.25 is installed
  • OR postgresql94-plperl-9.4.24-21.25 is installed
  • OR postgresql94-plpython-9.4.24-21.25 is installed
  • OR postgresql94-pltcl-9.4.24-21.25 is installed
  • OR postgresql94-server-9.4.24-21.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • cron-4.2-58 is installed
  • OR cronie-1.4.11-58 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ceph-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR ceph-common-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR libcephfs2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librados2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR libradosstriper1-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librbd1-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR librgw2-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-cephfs-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rados-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rbd-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • OR python-rgw-12.2.13+git.1592168685.85110a3e9d-2.50 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.46 is installed
  • OR libopenssl1_0_0-1.0.2j-60.46 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.46 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.46 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.46 is installed
  • OR openssl-1.0.2j-60.46 is installed
  • OR openssl-doc-1.0.2j-60.46 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • MozillaFirefox-52.9.0esr-109.38 is installed
  • OR MozillaFirefox-translations-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libQt5Concurrent5-5.6.1-17.6 is installed
  • OR libQt5Core5-5.6.1-17.6 is installed
  • OR libQt5DBus5-5.6.1-17.6 is installed
  • OR libQt5Gui5-5.6.1-17.6 is installed
  • OR libQt5Network5-5.6.1-17.6 is installed
  • OR libQt5OpenGL5-5.6.1-17.6 is installed
  • OR libQt5PrintSupport5-5.6.1-17.6 is installed
  • OR libQt5Sql5-5.6.1-17.6 is installed
  • OR libQt5Sql5-mysql-5.6.1-17.6 is installed
  • OR libQt5Sql5-postgresql-5.6.1-17.6 is installed
  • OR libQt5Sql5-sqlite-5.6.1-17.6 is installed
  • OR libQt5Sql5-unixODBC-5.6.1-17.6 is installed
  • OR libQt5Test5-5.6.1-17.6 is installed
  • OR libQt5Widgets5-5.6.1-17.6 is installed
  • OR libQt5Xml5-5.6.1-17.6 is installed
  • OR libqt5-qtbase-5.6.1-17.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • kernel-default-4.4.180-94.100 is installed
  • OR kernel-default-base-4.4.180-94.100 is installed
  • OR kernel-default-devel-4.4.180-94.100 is installed
  • OR kernel-devel-4.4.180-94.100 is installed
  • OR kernel-macros-4.4.180-94.100 is installed
  • OR kernel-source-4.4.180-94.100 is installed
  • OR kernel-syms-4.4.180-94.100 is installed
  • OR kgraft-patch-4_4_180-94_100-default-1-4.3 is installed
  • OR kgraft-patch-SLE12-SP3_Update_27-1-4.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND mailman-2.1.17-3.20 is installed
  • BACK