Oval Definition:oval:org.opensuse.security:def:63667
Revision Date:2020-12-01Version:1
Title:Security update for glibc (Moderate)
Description:

This update for glibc fixes the following issues:

Security issues fixed:

- CVE-2019-9169: regex: fix read overrun (bsc#1127308, BZ #24114) - CVE-2016-10739: Fully parse IPv4 address strings (bsc#1122729, BZ #20018) - CVE-2009-5155: ERE '0|()0|\1|0' causes regexec undefined behavior (bsc#1127223, BZ #18986)

Non-security issues fixed:

- Enable TLE only if GLIBC_ELISION_ENABLE=yes is defined (bsc#1131994, fate#322271) - Add more checks for valid ld.so.cache file (bsc#1110661, BZ #18093) - Added cfi information for start routines in order to stop unwinding (bsc#1128574) - ja_JP locale: Add entry for the new Japanese era (bsc#1100396, fate#325570, BZ #22964)
Family:unixClass:patch
Status:Reference(s):1009254
1071853
1093536
1094462
1100396
1106531
1107874
1109845
1110661
1114612
1121826
1122729
1127223
1127308
1128574
1131994
1150114
1160305
1160498
1168930
1168994
1172402
1173510
1173812
1174463
1174570
1174662
CVE-2009-5155
CVE-2016-10739
CVE-2018-10811
CVE-2018-11759
CVE-2018-16140
CVE-2018-16151
CVE-2018-16152
CVE-2018-17540
CVE-2018-5388
CVE-2019-16167
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-6133
CVE-2019-9169
CVE-2020-10713
CVE-2020-12405
CVE-2020-12406
CVE-2020-12410
CVE-2020-14308
CVE-2020-14309
CVE-2020-14310
CVE-2020-14311
CVE-2020-15706
CVE-2020-15707
CVE-2020-4067
CVE-2020-5260
CVE-2020-9862
CVE-2020-9893
CVE-2020-9894
CVE-2020-9895
CVE-2020-9915
CVE-2020-9925
openSUSE-SU-2019:1455-1
openSUSE-SU-2020:0094-1
openSUSE-SU-2020:0524-1
openSUSE-SU-2020:0937-1
openSUSE-SU-2020:1256-1
SUSE-SU-2018:3963-2
SUSE-SU-2019:1102-1
SUSE-SU-2019:2035-1
SUSE-SU-2019:2752-1
SUSE-SU-2019:3266-1
SUSE-SU-2020:1563-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND transfig-3.2.6a-lp151.4.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • coturn-4.5.1.3-lp152.2.3 is installed
  • OR coturn-devel-4.5.1.3-lp152.2.3 is installed
  • OR coturn-utils-4.5.1.3-lp152.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • glibc-2.22-100.8 is installed
  • OR glibc-32bit-2.22-100.8 is installed
  • OR glibc-devel-2.22-100.8 is installed
  • OR glibc-devel-32bit-2.22-100.8 is installed
  • OR glibc-html-2.22-100.8 is installed
  • OR glibc-i18ndata-2.22-100.8 is installed
  • OR glibc-info-2.22-100.8 is installed
  • OR glibc-locale-2.22-100.8 is installed
  • OR glibc-locale-32bit-2.22-100.8 is installed
  • OR glibc-profile-2.22-100.8 is installed
  • OR glibc-profile-32bit-2.22-100.8 is installed
  • OR nscd-2.22-100.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • grub2-2.02-12.31 is installed
  • OR grub2-arm64-efi-2.02-12.31 is installed
  • OR grub2-i386-pc-2.02-12.31 is installed
  • OR grub2-snapper-plugin-2.02-12.31 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.31 is installed
  • OR grub2-x86_64-efi-2.02-12.31 is installed
  • OR grub2-x86_64-xen-2.02-12.31 is installed
  • BACK