Oval Definition:oval:org.opensuse.security:def:64444
Revision Date:2020-12-09Version:1
Title:Security update for curl (Moderate)
Description:

This update for curl fixes the following issues:

- CVE-2020-8286: Fixed improper OSCP verification in the client side (bsc#1179593). - CVE-2020-8285: Fixed a stack overflow due to FTP wildcard (bsc#1179399). - CVE-2020-8284: Fixed an issue where a malicius FTP server could make curl connect to a different IP (bsc#1179398).
Family:unixClass:patch
Status:Reference(s):1068709
1068711
1141132
1171550
1171572
1171579
1172410
1174091
1177346
1177409
1177412
1177413
1177414
1179398
1179399
1179593
CVE-2014-0012
CVE-2016-10198
CVE-2016-10199
CVE-2016-10745
CVE-2017-1000231
CVE-2017-1000232
CVE-2017-5837
CVE-2017-5838
CVE-2017-5839
CVE-2017-5840
CVE-2017-5841
CVE-2017-5842
CVE-2017-5843
CVE-2017-5844
CVE-2017-5845
CVE-2017-5846
CVE-2017-5847
CVE-2017-5848
CVE-2019-10906
CVE-2019-13508
CVE-2019-20907
CVE-2019-8341
CVE-2020-10749
CVE-2020-13249
CVE-2020-27670
CVE-2020-27671
CVE-2020-27672
CVE-2020-27673
CVE-2020-8154
CVE-2020-8155
CVE-2020-8183
CVE-2020-8228
CVE-2020-8233
CVE-2020-8284
CVE-2020-8285
CVE-2020-8286
openSUSE-SU-2020:0438-1
openSUSE-SU-2020:0738-1
openSUSE-SU-2020:0741-1
openSUSE-SU-2020:1049-1
openSUSE-SU-2020:1254-1
openSUSE-SU-2020:1652-1
openSUSE-SU-2020:1844-1
SUSE-SU-2020:3735-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Desktop 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND cni-plugins-0.8.6-lp151.2.6 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.17-lp152.3.3 is installed
  • OR libpython2_7-1_0-32bit-2.7.17-lp152.3.3 is installed
  • OR python-2.7.17-lp152.3.3 is installed
  • OR python-32bit-2.7.17-lp152.3.3 is installed
  • OR python-base-2.7.17-lp152.3.3 is installed
  • OR python-base-32bit-2.7.17-lp152.3.3 is installed
  • OR python-curses-2.7.17-lp152.3.3 is installed
  • OR python-demo-2.7.17-lp152.3.3 is installed
  • OR python-devel-2.7.17-lp152.3.3 is installed
  • OR python-doc-2.7.17-lp152.3.3 is installed
  • OR python-doc-pdf-2.7.17-lp152.3.3 is installed
  • OR python-gdbm-2.7.17-lp152.3.3 is installed
  • OR python-idle-2.7.17-lp152.3.3 is installed
  • OR python-tk-2.7.17-lp152.3.3 is installed
  • OR python-xml-2.7.17-lp152.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND Package Information
  • curl-7.66.0-4.11.1 is installed
  • OR libcurl-devel-7.66.0-4.11.1 is installed
  • OR libcurl4-7.66.0-4.11.1 is installed
  • OR libcurl4-32bit-7.66.0-4.11.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND python3-Jinja2-2.10.1-3.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • gstreamer-devel-1.12.5-1 is installed
  • OR gstreamer-utils-1.12.5-1 is installed
  • OR typelib-1_0-Gst-1_0-1.12.5-1 is installed
  • BACK