Oval Definition:oval:org.opensuse.security:def:58179
Revision Date:2020-12-01Version:1
Title:Security update for curl (Important)
Description:

This update for curl fixes the following issues:

Security issues fixed:

- CVE-2019-3823: Fixed a heap out-of-bounds read in the code handling the end-of-response for SMTP (bsc#1123378). - CVE-2019-3822: Fixed a stack based buffer overflow in the function creating an outgoing NTLM type-3 message (bsc#1123377). - CVE-2018-16890: Fixed a heap buffer out-of-bounds read in the function handling incoming NTLM type-2 messages (bsc#1123371).
Family:unixClass:patch
Status:Reference(s):1003581
1004003
1011044
1012060
1012382
1012422
1012452
1012829
1012910
1012985
1013561
1013887
1015342
1015452
1017461
1018885
1020412
1021424
1022266
1022595
1023287
1025461
1026570
1027101
1027512
1027974
1028217
1028310
1028340
1028883
1029607
1030057
1030070
1031040
1031142
1031147
1031470
1031500
1031512
1031555
1031717
1031796
1032141
1032339
1032345
1032400
1032581
1032803
1033117
1033281
1033336
1033340
1033885
1034048
1034419
1034635
1034670
1034671
1034762
1034902
1034995
1035024
1035866
1035887
1035920
1035922
1036214
1036304
1036638
1036752
1036763
1037177
1037186
1037384
1037483
1037669
1037840
1037871
1037969
1038033
1038043
1038085
1038142
1038143
1038297
1038458
1038544
1038842
1038843
1038846
1038847
1038848
1038879
1038981
1038982
1039214
1039348
1039354
1039700
1039864
1039882
1039883
1039885
1039900
1040069
1040125
1040182
1040279
1040351
1040364
1040395
1040425
1040463
1040567
1040609
1040855
1040929
1040941
1041087
1041160
1041168
1041242
1041431
1041810
1042286
1042356
1042421
1042517
1042535
1042536
1042863
1042886
1043014
1043231
1043236
1043347
1043371
1043467
1043488
1043598
1043912
1043935
1043990
1044015
1044082
1044120
1044125
1044532
1044767
1044772
1044854
1044880
1044912
1045154
1045235
1045286
1045307
1045467
1045568
1045735
1046105
1046434
1046589
1049825
1070851
1071905
1071906
1076192
1079334
1084604
1088705
1091624
1092413
1096803
1099847
1100028
1101349
1102429
1107832
1110233
1113231
1116574
1116717
1117275
1119493
1123156
1123371
1123377
1123378
1124211
1131493
1140868
1141493
1146358
1146359
1154212
1156323
1156324
1156326
1156328
1156329
1158442
1159478
1159479
1159482
1159486
1162687
1162689
1162691
1170771
799133
863764
922871
939801
966170
966172
966191
966321
966339
971975
988065
989311
990058
990682
993832
995542
CVE-2017-1000365
CVE-2017-1000380
CVE-2017-12652
CVE-2017-13672
CVE-2017-13673
CVE-2017-3737
CVE-2017-3738
CVE-2017-7346
CVE-2017-7487
CVE-2017-7616
CVE-2017-7618
CVE-2017-8890
CVE-2017-8924
CVE-2017-8925
CVE-2017-9074
CVE-2017-9075
CVE-2017-9076
CVE-2017-9077
CVE-2017-9150
CVE-2017-9242
CVE-2017-9269
CVE-2018-13785
CVE-2018-14633
CVE-2018-16872
CVE-2018-16890
CVE-2018-17182
CVE-2018-19364
CVE-2018-19489
CVE-2018-3136
CVE-2018-3139
CVE-2018-3149
CVE-2018-3169
CVE-2018-3180
CVE-2018-3183
CVE-2018-3214
CVE-2018-7685
CVE-2018-7858
CVE-2019-11709
CVE-2019-11711
CVE-2019-11712
CVE-2019-11713
CVE-2019-11715
CVE-2019-11717
CVE-2019-11719
CVE-2019-11729
CVE-2019-11730
CVE-2019-12523
CVE-2019-12526
CVE-2019-12528
CVE-2019-17631
CVE-2019-18388
CVE-2019-18389
CVE-2019-18390
CVE-2019-18391
CVE-2019-18676
CVE-2019-18677
CVE-2019-18678
CVE-2019-18679
CVE-2019-2933
CVE-2019-2945
CVE-2019-2958
CVE-2019-2962
CVE-2019-2964
CVE-2019-2973
CVE-2019-2975
CVE-2019-2978
CVE-2019-2981
CVE-2019-2983
CVE-2019-2988
CVE-2019-2989
CVE-2019-2992
CVE-2019-2996
CVE-2019-2999
CVE-2019-3822
CVE-2019-3823
CVE-2019-5953
CVE-2019-6778
CVE-2019-7317
CVE-2019-8675
CVE-2019-8696
CVE-2019-9811
CVE-2020-12243
CVE-2020-8449
CVE-2020-8450
CVE-2020-8517
SUSE-SU-2017:1853-1
SUSE-SU-2017:3343-1
SUSE-SU-2018:4064-1
SUSE-SU-2019:0249-1
SUSE-SU-2019:0489-1
SUSE-SU-2019:0956-1
SUSE-SU-2019:1861-1
SUSE-SU-2019:3057-1
SUSE-SU-2019:3060-2
SUSE-SU-2020:0016-1
SUSE-SU-2020:0024-1
SUSE-SU-2020:0661-1
SUSE-SU-2020:1193-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • openssh-7.6p1-lp150.7 is installed
  • OR openssh-helpers-7.6p1-lp150.7 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaFirefox-60.7.2-lp151.2.7 is installed
  • OR MozillaFirefox-branding-upstream-60.7.2-lp151.2.7 is installed
  • OR MozillaFirefox-buildsymbols-60.7.2-lp151.2.7 is installed
  • OR MozillaFirefox-devel-60.7.2-lp151.2.7 is installed
  • OR MozillaFirefox-translations-common-60.7.2-lp151.2.7 is installed
  • OR MozillaFirefox-translations-other-60.7.2-lp151.2.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • kernel-default-4.4.74-92.29 is installed
  • OR kernel-default-base-4.4.74-92.29 is installed
  • OR kernel-default-devel-4.4.74-92.29 is installed
  • OR kernel-default-man-4.4.74-92.29 is installed
  • OR kernel-devel-4.4.74-92.29 is installed
  • OR kernel-macros-4.4.74-92.29 is installed
  • OR kernel-source-4.4.74-92.29 is installed
  • OR kernel-syms-4.4.74-92.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.68 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.68 is installed
  • OR openldap2-2.4.41-18.68 is installed
  • OR openldap2-back-meta-2.4.41-18.68 is installed
  • OR openldap2-client-2.4.41-18.68 is installed
  • OR openldap2-doc-2.4.41-18.68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.25-30.39 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.25-30.39 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.25-30.39 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.25-30.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gdk-pixbuf-lang-2.34.0-18 is installed
  • OR gdk-pixbuf-query-loaders-2.34.0-18 is installed
  • OR gdk-pixbuf-query-loaders-32bit-2.34.0-18 is installed
  • OR libgdk_pixbuf-2_0-0-2.34.0-18 is installed
  • OR libgdk_pixbuf-2_0-0-32bit-2.34.0-18 is installed
  • OR typelib-1_0-GdkPixbuf-2_0-2.34.0-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ceph-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR ceph-common-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR libcephfs2-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR librados2-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR libradosstriper1-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR librbd1-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR librgw2-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR python-cephfs-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR python-rados-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR python-rbd-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • OR python-rgw-12.2.12+git.1587570958.35d78d0243-2.45 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_64-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_20-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_175-94_79-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_23-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libpython3_4m1_0-3.4.6-25.34 is installed
  • OR python3-3.4.6-25.34 is installed
  • OR python3-base-3.4.6-25.34 is installed
  • OR python3-curses-3.4.6-25.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • file-5.22-10.6 is installed
  • OR file-magic-5.22-10.6 is installed
  • OR libmagic1-5.22-10.6 is installed
  • OR libmagic1-32bit-5.22-10.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • curl-7.37.0-37.34 is installed
  • OR libcurl4-7.37.0-37.34 is installed
  • OR libcurl4-32bit-7.37.0-37.34 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ansible-2.4.6.0-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libvirt-3.3.0-5.40 is installed
  • OR libvirt-admin-3.3.0-5.40 is installed
  • OR libvirt-client-3.3.0-5.40 is installed
  • OR libvirt-daemon-3.3.0-5.40 is installed
  • OR libvirt-daemon-config-network-3.3.0-5.40 is installed
  • OR libvirt-daemon-config-nwfilter-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-interface-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-libxl-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-lxc-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-network-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-nodedev-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-nwfilter-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-qemu-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-secret-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-core-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-disk-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-iscsi-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-logical-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-mpath-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-rbd-3.3.0-5.40 is installed
  • OR libvirt-daemon-driver-storage-scsi-3.3.0-5.40 is installed
  • OR libvirt-daemon-hooks-3.3.0-5.40 is installed
  • OR libvirt-daemon-lxc-3.3.0-5.40 is installed
  • OR libvirt-daemon-qemu-3.3.0-5.40 is installed
  • OR libvirt-daemon-xen-3.3.0-5.40 is installed
  • OR libvirt-doc-3.3.0-5.40 is installed
  • OR libvirt-libs-3.3.0-5.40 is installed
  • OR libvirt-lock-sanlock-3.3.0-5.40 is installed
  • OR libvirt-nss-3.3.0-5.40 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.20-3.3 is installed
  • BACK