Oval Definition:oval:org.opensuse.security:def:60321
Revision Date:2021-08-05Version:1
Title:Security update for libsndfile (Critical)
Description:

This update for libsndfile fixes the following issues:

- CVE-2018-13139: Fixed a stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact. (bsc#1100167) - CVE-2018-19432: Fixed a NULL pointer dereference in the function sf_write_int in sndfile.c, which will lead to a denial of service. (bsc#1116993) - CVE-2021-3246: Fixed a heap buffer overflow vulnerability in msadpcm_decode_block. (bsc#1188540) - CVE-2018-19758: Fixed a heap-based buffer over-read at wav.c in wav_write_header in libsndfile 1.0.28 that will cause a denial of service. (bsc#1117954)
Family:unixClass:patch
Status:Reference(s):1054413
1073879
1077717
1087082
1087083
1089343
1100167
1104134
1104467
1111622
1116993
1117954
1122668
1136446
1137597
1139073
1140747
1141035
1154043
1155988
1156146
1160895
1160912
1160968
1162388
1163019
1167976
1171477
1171930
1173986
1174420
1174543
1176756
1188540
761500
922448
929736
935252
945455
947357
961596
967128
CVE-2011-1145
CVE-2012-4504
CVE-2013-2124
CVE-2013-4419
CVE-2013-6401
CVE-2015-2296
CVE-2015-7995
CVE-2015-8079
CVE-2015-9019
CVE-2016-4738
CVE-2017-5029
CVE-2018-13139
CVE-2018-17204
CVE-2018-17205
CVE-2018-17206
CVE-2018-18074
CVE-2018-19432
CVE-2018-19758
CVE-2018-3639
CVE-2018-3640
CVE-2018-3646
CVE-2019-11135
CVE-2019-11139
CVE-2019-11477
CVE-2019-11478
CVE-2019-14818
CVE-2019-18901
CVE-2019-3846
CVE-2020-10722
CVE-2020-15673
CVE-2020-15676
CVE-2020-15677
CVE-2020-15678
CVE-2020-2574
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
CVE-2020-8608
CVE-2021-3246
SUSE-SU-2018:2331-1
SUSE-SU-2018:4128-1
SUSE-SU-2019:1948-1
SUSE-SU-2019:2959-1
SUSE-SU-2020:0261-1
SUSE-SU-2020:0527-1
SUSE-SU-2020:1792-1
SUSE-SU-2020:2171-1
SUSE-SU-2020:2194-1
SUSE-SU-2020:2759-1
SUSE-SU-2021:2615-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • exim-4.88-lp151.4.6 is installed
  • OR eximon-4.88-lp151.4.6 is installed
  • OR eximstats-html-4.88-lp151.4.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • graphviz-2.40.1-lp151.6.3 is installed
  • OR graphviz-addons-2.40.1-lp151.6.3 is installed
  • OR graphviz-devel-2.40.1-lp151.6.3 is installed
  • OR graphviz-doc-2.40.1-lp151.6.3 is installed
  • OR graphviz-gd-2.40.1-lp151.6.3 is installed
  • OR graphviz-gnome-2.40.1-lp151.6.3 is installed
  • OR graphviz-guile-2.40.1-lp151.6.3 is installed
  • OR graphviz-gvedit-2.40.1-lp151.6.3 is installed
  • OR graphviz-java-2.40.1-lp151.6.3 is installed
  • OR graphviz-lua-2.40.1-lp151.6.3 is installed
  • OR graphviz-perl-2.40.1-lp151.6.3 is installed
  • OR graphviz-php-2.40.1-lp151.6.3 is installed
  • OR graphviz-plugins-core-2.40.1-lp151.6.3 is installed
  • OR graphviz-python-2.40.1-lp151.6.3 is installed
  • OR graphviz-ruby-2.40.1-lp151.6.3 is installed
  • OR graphviz-smyrna-2.40.1-lp151.6.3 is installed
  • OR graphviz-tcl-2.40.1-lp151.6.3 is installed
  • OR libgraphviz6-2.40.1-lp151.6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • guestfs-data-1.32.4-19 is installed
  • OR guestfs-tools-1.32.4-19 is installed
  • OR guestfsd-1.32.4-19 is installed
  • OR libguestfs0-1.32.4-19 is installed
  • OR perl-Sys-Guestfs-1.32.4-19 is installed
  • OR python-libguestfs-1.32.4-19 is installed
  • OR virt-p2v-1.32.4-19 is installed
  • OR virt-v2v-1.32.4-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • python-certifi-2018.4.16-3.6 is installed
  • OR python-chardet-3.0.4-5.6 is installed
  • OR python-urllib3-1.22-3.20 is installed
  • OR python3-certifi-2018.4.16-3.6 is installed
  • OR python3-chardet-3.0.4-5.6 is installed
  • OR python3-requests-2.20.1-5 is installed
  • OR python3-urllib3-1.22-3.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_103-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_140-94_42-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_15-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libprocps3-3.3.9-11.14 is installed
  • OR procps-3.3.9-11.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • fontconfig-2.11.1-7 is installed
  • OR fontconfig-32bit-2.11.1-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • grub2-2.02-12.31 is installed
  • OR grub2-arm64-efi-2.02-12.31 is installed
  • OR grub2-i386-pc-2.02-12.31 is installed
  • OR grub2-snapper-plugin-2.02-12.31 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.31 is installed
  • OR grub2-x86_64-efi-2.02-12.31 is installed
  • OR grub2-x86_64-xen-2.02-12.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • MozillaFirefox-78.1.0-112.8 is installed
  • OR MozillaFirefox-devel-78.1.0-112.8 is installed
  • OR MozillaFirefox-translations-common-78.1.0-112.8 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP5 is installed
  • AND
  • libsndfile1-1.0.25-36.23.1 is installed
  • OR libsndfile1-32bit-1.0.25-36.23.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • AND
  • libsndfile1-1.0.25-36.23.1 is installed
  • OR libsndfile1-32bit-1.0.25-36.23.1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ucode-intel-20191112-13.53 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libmysqlclient18-10.0.40.3-29.38 is installed
  • OR mariadb-10.0.40.3-29.38 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • libfreebl3-3.53.1-58.48 is installed
  • OR libfreebl3-32bit-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-3.53.1-58.48 is installed
  • OR libfreebl3-hmac-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-3.53.1-58.48 is installed
  • OR libsoftokn3-32bit-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-3.53.1-58.48 is installed
  • OR libsoftokn3-hmac-32bit-3.53.1-58.48 is installed
  • OR mozilla-nspr-4.25-19.15 is installed
  • OR mozilla-nspr-32bit-4.25-19.15 is installed
  • OR mozilla-nspr-devel-4.25-19.15 is installed
  • OR mozilla-nss-3.53.1-58.48 is installed
  • OR mozilla-nss-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-3.53.1-58.48 is installed
  • OR mozilla-nss-certs-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-devel-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-3.53.1-58.48 is installed
  • OR mozilla-nss-sysinit-32bit-3.53.1-58.48 is installed
  • OR mozilla-nss-tools-3.53.1-58.48 is installed
  • BACK