Oval Definition:oval:org.opensuse.security:def:58125
Revision Date:2020-12-01Version:1
Title:Security update for libssh2_org (Moderate)
Description:

This update for libssh2_org fixes the following issues:

- Fix the previous fix for CVE-2019-3860 (bsc#1136570, bsc#1128481) (Out-of-bounds reads with specially crafted SFTP packets)
Family:unixClass:patch
Status:Reference(s):1008831
1011685
1012754
1060354
1060355
1060360
1060361
1060362
1060364
1068032
1084878
1086690
1092497
1094150
1094154
1094161
1104662
1106913
1107832
1110233
1117665
1120813
1127458
1128481
1132549
1132664
1133037
1135966
1135967
1136570
1137865
1139550
1140671
1141054
1141619
1144338
1144903
1145477
1146285
1146361
1146378
1146391
1146413
1146425
1146512
1146514
1146516
1146519
1146584
1147122
1148394
1148938
1149376
1149522
1149527
1149555
1149612
1149849
1150025
1150112
1150223
1150452
1150457
1150465
1150466
1150733
1151347
1151350
1152685
1152782
1152788
1153158
1154162
1154372
1155671
1155898
1156187
1156402
1159913
1165631
1167890
1168404
1168407
1168930
1169066
1172205
1173378
1173380
1174157
1175259
1175534
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
CVE-2016-10906
CVE-2016-8632
CVE-2016-8655
CVE-2016-9555
CVE-2017-14491
CVE-2017-14492
CVE-2017-14493
CVE-2017-14494
CVE-2017-14495
CVE-2017-14496
CVE-2017-18269
CVE-2017-18509
CVE-2017-18595
CVE-2018-11236
CVE-2018-11237
CVE-2018-12207
CVE-2018-14633
CVE-2018-17182
CVE-2018-20976
CVE-2019-0154
CVE-2019-0155
CVE-2019-1010006
CVE-2019-10220
CVE-2019-11135
CVE-2019-11234
CVE-2019-11235
CVE-2019-11459
CVE-2019-13272
CVE-2019-14814
CVE-2019-14815
CVE-2019-14816
CVE-2019-14821
CVE-2019-14835
CVE-2019-15098
CVE-2019-15211
CVE-2019-15212
CVE-2019-15214
CVE-2019-15215
CVE-2019-15216
CVE-2019-15217
CVE-2019-15218
CVE-2019-15219
CVE-2019-15220
CVE-2019-15221
CVE-2019-15290
CVE-2019-15291
CVE-2019-15505
CVE-2019-15666
CVE-2019-15807
CVE-2019-15902
CVE-2019-15924
CVE-2019-15926
CVE-2019-15927
CVE-2019-16231
CVE-2019-16232
CVE-2019-16233
CVE-2019-16234
CVE-2019-16413
CVE-2019-16995
CVE-2019-17055
CVE-2019-17056
CVE-2019-17133
CVE-2019-17639
CVE-2019-17666
CVE-2019-18680
CVE-2019-18805
CVE-2019-2201
CVE-2019-2974
CVE-2019-3689
CVE-2019-3840
CVE-2019-3860
CVE-2019-5108
CVE-2019-9456
CVE-2019-9506
CVE-2020-0543
CVE-2020-14364
CVE-2020-14577
CVE-2020-14578
CVE-2020-14579
CVE-2020-14583
CVE-2020-14593
CVE-2020-14621
CVE-2020-15565
CVE-2020-15567
CVE-2020-1749
CVE-2020-1927
CVE-2020-1934
CVE-2020-1938
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25603
CVE-2020-25604
CVE-2020-5260
SUSE-SU-2016:3049-1
SUSE-SU-2017:2618-1
SUSE-SU-2019:0553-1
SUSE-SU-2019:1039-1
SUSE-SU-2019:1606-1
SUSE-SU-2019:2080-1
SUSE-SU-2019:2781-1
SUSE-SU-2019:2972-1
SUSE-SU-2019:2984-1
SUSE-SU-2020:0050-1
SUSE-SU-2020:0992-1
SUSE-SU-2020:1272-1
SUSE-SU-2020:2482-1
SUSE-SU-2020:2822-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND libquicktime0-1.2.4cvs20150223-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND storeBackup-3.5-lp151.5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_115-default-8-2 is installed
  • OR kgraft-patch-3_12_74-60_64_115-xen-8-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_34-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • kernel-default-4.4.21-84 is installed
  • OR kernel-default-base-4.4.21-84 is installed
  • OR kernel-default-devel-4.4.21-84 is installed
  • OR kernel-default-man-4.4.21-84 is installed
  • OR kernel-devel-4.4.21-84 is installed
  • OR kernel-macros-4.4.21-84 is installed
  • OR kernel-source-4.4.21-84 is installed
  • OR kernel-syms-4.4.21-84 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libjpeg-turbo-1.5.3-31.19 is installed
  • OR libjpeg62-62.2.0-31.19 is installed
  • OR libjpeg62-32bit-62.2.0-31.19 is installed
  • OR libjpeg62-turbo-1.5.3-31.19 is installed
  • OR libjpeg8-8.1.2-31.19 is installed
  • OR libjpeg8-32bit-8.1.2-31.19 is installed
  • OR libturbojpeg0-8.1.2-31.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_120-92_70-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_20-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND apache2-mod_nss-1.0.14-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libpolkit0-0.113-5.18 is installed
  • OR polkit-0.113-5.18 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_162-94_72-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_22-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_175-94_79-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_23-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND squid-3.5.21-26.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • apache2-mod_apparmor-2.8.2-49 is installed
  • OR apparmor-docs-2.8.2-49 is installed
  • OR apparmor-parser-2.8.2-49 is installed
  • OR apparmor-profiles-2.8.2-49 is installed
  • OR apparmor-utils-2.8.2-49 is installed
  • OR libapparmor1-2.8.2-49 is installed
  • OR libapparmor1-32bit-2.8.2-49 is installed
  • OR pam_apparmor-2.8.2-49 is installed
  • OR pam_apparmor-32bit-2.8.2-49 is installed
  • OR perl-apparmor-2.8.2-49 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ardana-ansible-8.0+git.1566374355.c509923-3.67 is installed
  • OR ardana-glance-8.0+git.1566376789.be0fe01-3.17 is installed
  • OR ardana-horizon-8.0+git.1565816064.5d4f73f-3.18 is installed
  • OR ardana-input-model-8.0+git.1566517401.98450e6-3.33 is installed
  • OR ardana-manila-8.0+git.1568835837.2452e7a-1.21 is installed
  • OR ardana-neutron-8.0+git.1568220097.74ee4b4-3.33 is installed
  • OR ardana-nova-8.0+git.1566902754.c58ff69-3.35 is installed
  • OR ardana-octavia-8.0+git.1568373448.bcaee7e-3.20 is installed
  • OR ardana-tempest-8.0+git.1566471887.fd2fec7-3.27 is installed
  • OR galera-3-25.3.25-4.6 is installed
  • OR galera-3-wsrep-provider-25.3.25-4.6 is installed
  • OR grafana-4.6.5-4.6 is installed
  • OR libmariadb3-3.1.2-3.12 is installed
  • OR mariadb-10.2.25-4.14 is installed
  • OR mariadb-client-10.2.25-4.14 is installed
  • OR mariadb-connector-c-3.1.2-3.12 is installed
  • OR mariadb-errormessages-10.2.25-4.14 is installed
  • OR mariadb-galera-10.2.25-4.14 is installed
  • OR mariadb-tools-10.2.25-4.14 is installed
  • OR novnc-1.0.0-3.6 is installed
  • OR openstack-cinder-11.2.3~dev16-3.21 is installed
  • OR openstack-cinder-api-11.2.3~dev16-3.21 is installed
  • OR openstack-cinder-backup-11.2.3~dev16-3.21 is installed
  • OR openstack-cinder-doc-11.2.3~dev16-3.21 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev16-3.21 is installed
  • OR openstack-cinder-volume-11.2.3~dev16-3.21 is installed
  • OR openstack-glance-15.0.3~dev3-3.12 is installed
  • OR openstack-glance-api-15.0.3~dev3-3.12 is installed
  • OR openstack-glance-doc-15.0.3~dev3-3.12 is installed
  • OR openstack-glance-registry-15.0.3~dev3-3.12 is installed
  • OR openstack-heat-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-api-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-doc-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-engine-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev13-3.24 is installed
  • OR openstack-heat-test-9.0.8~dev13-3.24 is installed
  • OR openstack-horizon-plugin-neutron-vpnaas-ui-1.0.1~dev3-3.6 is installed
  • OR openstack-keystone-12.0.4~dev4-5.27 is installed
  • OR openstack-keystone-doc-12.0.4~dev4-5.27 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.9 is installed
  • OR openstack-neutron-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-doc-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-gbp-7.3.1~dev56-3.9 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.15 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.15 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.15 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev51-3.24 is installed
  • OR openstack-neutron-server-11.0.9~dev51-3.24 is installed
  • OR openstack-nova-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-api-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-cells-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-compute-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-conductor-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-console-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-doc-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-placement-api-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-scheduler-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev7-3.29 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev7-3.29 is installed
  • OR python-amqp-2.2.2-3.6 is installed
  • OR python-cinder-11.2.3~dev16-3.21 is installed
  • OR python-glance-15.0.3~dev3-3.12 is installed
  • OR python-heat-9.0.8~dev13-3.24 is installed
  • OR python-horizon-plugin-neutron-vpnaas-ui-1.0.1~dev3-3.6 is installed
  • OR python-keystone-12.0.4~dev4-5.27 is installed
  • OR python-neutron-11.0.9~dev51-3.24 is installed
  • OR python-neutron-gbp-7.3.1~dev56-3.9 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.15 is installed
  • OR python-nova-16.1.9~dev7-3.29 is installed
  • OR python-ovs-2.7.2-3.6 is installed
  • OR python-pysaml2-4.0.2-5.3 is installed
  • OR python-python-engineio-2.0.2-3.3 is installed
  • OR python-urllib3-1.22-5.9 is installed
  • OR release-notes-suse-openstack-cloud-8.20190911-3.20 is installed
  • OR venv-openstack-aodh-5.1.1~dev7-12.20 is installed
  • OR venv-openstack-aodh-x86_64-5.1.1~dev7-12.20 is installed
  • OR venv-openstack-barbican-5.0.2~dev3-12.21 is installed
  • OR venv-openstack-barbican-x86_64-5.0.2~dev3-12.21 is installed
  • OR venv-openstack-ceilometer-9.0.8~dev7-12.18 is installed
  • OR venv-openstack-ceilometer-x86_64-9.0.8~dev7-12.18 is installed
  • OR venv-openstack-cinder-11.2.3~dev16-14.21 is installed
  • OR venv-openstack-cinder-x86_64-11.2.3~dev16-14.21 is installed
  • OR venv-openstack-designate-5.0.3~dev7-12.19 is installed
  • OR venv-openstack-designate-x86_64-5.0.3~dev7-12.19 is installed
  • OR venv-openstack-freezer-5.0.0.0~xrc2~dev2-10.16 is installed
  • OR venv-openstack-freezer-x86_64-5.0.0.0~xrc2~dev2-10.16 is installed
  • OR venv-openstack-glance-15.0.3~dev3-12.19 is installed
  • OR venv-openstack-glance-x86_64-15.0.3~dev3-12.19 is installed
  • OR venv-openstack-heat-9.0.8~dev13-12.21 is installed
  • OR venv-openstack-heat-x86_64-9.0.8~dev13-12.21 is installed
  • OR venv-openstack-horizon-12.0.4~dev6-14.26 is installed
  • OR venv-openstack-horizon-x86_64-12.0.4~dev6-14.26 is installed
  • OR venv-openstack-ironic-9.1.8~dev7-12.21 is installed
  • OR venv-openstack-ironic-x86_64-9.1.8~dev7-12.21 is installed
  • OR venv-openstack-keystone-12.0.4~dev4-11.22 is installed
  • OR venv-openstack-keystone-x86_64-12.0.4~dev4-11.22 is installed
  • OR venv-openstack-magnum-5.0.2_5.0.2_5.0.2~dev31-11.20 is installed
  • OR venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.20 is installed
  • OR venv-openstack-manila-5.1.1~dev2-12.23 is installed
  • OR venv-openstack-manila-x86_64-5.1.1~dev2-12.23 is installed
  • OR venv-openstack-monasca-2.2.2~dev1-11.18 is installed
  • OR venv-openstack-monasca-ceilometer-1.5.1_1.5.1_1.5.1~dev3-8.16 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.16 is installed
  • OR venv-openstack-monasca-x86_64-2.2.2~dev1-11.18 is installed
  • OR venv-openstack-murano-4.0.2~dev2-12.16 is installed
  • OR venv-openstack-murano-x86_64-4.0.2~dev2-12.16 is installed
  • OR venv-openstack-neutron-11.0.9~dev51-13.24 is installed
  • OR venv-openstack-neutron-x86_64-11.0.9~dev51-13.24 is installed
  • OR venv-openstack-nova-16.1.9~dev7-11.22 is installed
  • OR venv-openstack-nova-x86_64-16.1.9~dev7-11.22 is installed
  • OR venv-openstack-octavia-1.0.6~dev2-12.21 is installed
  • OR venv-openstack-octavia-x86_64-1.0.6~dev2-12.21 is installed
  • OR venv-openstack-sahara-7.0.4~dev1-11.20 is installed
  • OR venv-openstack-sahara-x86_64-7.0.4~dev1-11.20 is installed
  • OR venv-openstack-swift-2.15.2-11.13 is installed
  • OR venv-openstack-swift-x86_64-2.15.2-11.13 is installed
  • OR venv-openstack-trove-8.0.1~dev13-11.20 is installed
  • OR venv-openstack-trove-x86_64-8.0.1~dev13-11.20 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • BACK