Oval Definition:oval:org.opensuse.security:def:64508
Revision Date:2021-05-26Version:1
Title:Security update for curl (Moderate)
Description:

This update for curl fixes the following issues:

- CVE-2021-22898: Fixed curl TELNET stack contents disclosure (bsc#1186114). - Allow partial chain verification [jsc#SLE-17956] * Have intermediate certificates in the trust store be treated as trust-anchors, in the same way as self-signed root CA certificates are. This allows users to verify servers using the intermediate cert only, instead of needing the whole chain. * Set FLAG_TRUSTED_FIRST unconditionally. * Do not check partial chains with CRL check.
Family:unixClass:patch
Status:Reference(s):1027519
1125401
1155419
1160305
1160471
1160498
1165299
1165300
1165301
1169740
1170441
1171355
1172004
1172651
1173334
1173786
1174010
1175223
1176339
1176341
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
1186114
992038
CVE-2006-7246
CVE-2013-2064
CVE-2015-2924
CVE-2016-0764
CVE-2018-8956
CVE-2019-15681
CVE-2019-15690
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-20788
CVE-2020-11868
CVE-2020-12693
CVE-2020-13817
CVE-2020-15025
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25598
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25602
CVE-2020-25603
CVE-2020-25604
CVE-2020-7041
CVE-2020-7042
CVE-2020-7043
CVE-2020-7068
CVE-2021-22898
openSUSE-SU-2020:0094-1
openSUSE-SU-2020:0301-1
openSUSE-SU-2020:0624-1
openSUSE-SU-2020:0934-1
openSUSE-SU-2020:1354-1
openSUSE-SU-2020:1608-1
SUSE-SU-2021:1762-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Desktop 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-lp151.6.32 is installed
  • OR php7-7.2.5-lp151.6.32 is installed
  • OR php7-bcmath-7.2.5-lp151.6.32 is installed
  • OR php7-bz2-7.2.5-lp151.6.32 is installed
  • OR php7-calendar-7.2.5-lp151.6.32 is installed
  • OR php7-ctype-7.2.5-lp151.6.32 is installed
  • OR php7-curl-7.2.5-lp151.6.32 is installed
  • OR php7-dba-7.2.5-lp151.6.32 is installed
  • OR php7-devel-7.2.5-lp151.6.32 is installed
  • OR php7-dom-7.2.5-lp151.6.32 is installed
  • OR php7-embed-7.2.5-lp151.6.32 is installed
  • OR php7-enchant-7.2.5-lp151.6.32 is installed
  • OR php7-exif-7.2.5-lp151.6.32 is installed
  • OR php7-fastcgi-7.2.5-lp151.6.32 is installed
  • OR php7-fileinfo-7.2.5-lp151.6.32 is installed
  • OR php7-firebird-7.2.5-lp151.6.32 is installed
  • OR php7-fpm-7.2.5-lp151.6.32 is installed
  • OR php7-ftp-7.2.5-lp151.6.32 is installed
  • OR php7-gd-7.2.5-lp151.6.32 is installed
  • OR php7-gettext-7.2.5-lp151.6.32 is installed
  • OR php7-gmp-7.2.5-lp151.6.32 is installed
  • OR php7-iconv-7.2.5-lp151.6.32 is installed
  • OR php7-intl-7.2.5-lp151.6.32 is installed
  • OR php7-json-7.2.5-lp151.6.32 is installed
  • OR php7-ldap-7.2.5-lp151.6.32 is installed
  • OR php7-mbstring-7.2.5-lp151.6.32 is installed
  • OR php7-mysql-7.2.5-lp151.6.32 is installed
  • OR php7-odbc-7.2.5-lp151.6.32 is installed
  • OR php7-opcache-7.2.5-lp151.6.32 is installed
  • OR php7-openssl-7.2.5-lp151.6.32 is installed
  • OR php7-pcntl-7.2.5-lp151.6.32 is installed
  • OR php7-pdo-7.2.5-lp151.6.32 is installed
  • OR php7-pear-7.2.5-lp151.6.32 is installed
  • OR php7-pear-Archive_Tar-7.2.5-lp151.6.32 is installed
  • OR php7-pgsql-7.2.5-lp151.6.32 is installed
  • OR php7-phar-7.2.5-lp151.6.32 is installed
  • OR php7-posix-7.2.5-lp151.6.32 is installed
  • OR php7-readline-7.2.5-lp151.6.32 is installed
  • OR php7-shmop-7.2.5-lp151.6.32 is installed
  • OR php7-snmp-7.2.5-lp151.6.32 is installed
  • OR php7-soap-7.2.5-lp151.6.32 is installed
  • OR php7-sockets-7.2.5-lp151.6.32 is installed
  • OR php7-sodium-7.2.5-lp151.6.32 is installed
  • OR php7-sqlite-7.2.5-lp151.6.32 is installed
  • OR php7-sysvmsg-7.2.5-lp151.6.32 is installed
  • OR php7-sysvsem-7.2.5-lp151.6.32 is installed
  • OR php7-sysvshm-7.2.5-lp151.6.32 is installed
  • OR php7-test-7.2.5-lp151.6.32 is installed
  • OR php7-tidy-7.2.5-lp151.6.32 is installed
  • OR php7-tokenizer-7.2.5-lp151.6.32 is installed
  • OR php7-wddx-7.2.5-lp151.6.32 is installed
  • OR php7-xmlreader-7.2.5-lp151.6.32 is installed
  • OR php7-xmlrpc-7.2.5-lp151.6.32 is installed
  • OR php7-xmlwriter-7.2.5-lp151.6.32 is installed
  • OR php7-xsl-7.2.5-lp151.6.32 is installed
  • OR php7-zip-7.2.5-lp151.6.32 is installed
  • OR php7-zlib-7.2.5-lp151.6.32 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • xen-4.13.1_08-lp152.2.9 is installed
  • OR xen-devel-4.13.1_08-lp152.2.9 is installed
  • OR xen-doc-html-4.13.1_08-lp152.2.9 is installed
  • OR xen-libs-4.13.1_08-lp152.2.9 is installed
  • OR xen-libs-32bit-4.13.1_08-lp152.2.9 is installed
  • OR xen-tools-4.13.1_08-lp152.2.9 is installed
  • OR xen-tools-domU-4.13.1_08-lp152.2.9 is installed
  • OR xen-tools-xendomains-wait-disk-4.13.1_08-lp152.2.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND Package Information
  • curl-7.66.0-4.17.1 is installed
  • OR libcurl-devel-7.66.0-4.17.1 is installed
  • OR libcurl4-7.66.0-4.17.1 is installed
  • OR libcurl4-32bit-7.66.0-4.17.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • NetworkManager-1.10.6-5.3 is installed
  • OR NetworkManager-devel-1.10.6-5.3 is installed
  • OR libnm-glib-vpn1-1.10.6-5.3 is installed
  • OR libnm-glib4-1.10.6-5.3 is installed
  • OR libnm-util2-1.10.6-5.3 is installed
  • OR typelib-1_0-NMClient-1_0-1.10.6-5.3 is installed
  • OR typelib-1_0-NetworkManager-1_0-1.10.6-5.3 is installed
  • BACK