Oval Definition:oval:org.opensuse.security:def:65588
Revision Date:2021-08-05Version:1
Title:Security update for apache-commons-compress (Important)
Description:

This update for apache-commons-compress fixes the following issues:

- Updated to 1.21 - CVE-2021-35515: Fixed an infinite loop when reading a specially crafted 7Z archive. (bsc#1188463) - CVE-2021-35516: Fixed an excessive memory allocation when reading a specially crafted 7Z archive. (bsc#1188464) - CVE-2021-35517: Fixed an excessive memory allocation when reading a specially crafted TAR archive. (bsc#1188465) - CVE-2021-36090: Fixed an excessive memory allocation when reading a specially crafted ZIP archive. (bsc#1188466)
Family:unixClass:patch
Status:Reference(s):1010979
1010980
1020451
1020456
1020458
1020460
1027519
1045450
1057152
1088278
1114498
1115637
1117328
1120805
1120807
1157490
1167007
1172205
1188463
1188464
1188465
1188466
CVE-2016-9398
CVE-2016-9399
CVE-2017-14132
CVE-2017-5499
CVE-2017-5503
CVE-2017-5504
CVE-2017-5505
CVE-2017-9782
CVE-2018-18873
CVE-2018-19139
CVE-2018-19543
CVE-2018-20570
CVE-2018-20622
CVE-2018-9252
CVE-2020-0543
CVE-2021-35515
CVE-2021-35516
CVE-2021-35517
CVE-2021-36090
SUSE-SU-2021:2612-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for Development Tools 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • xen-4.12.3_02-3.18 is installed
  • OR xen-devel-4.12.3_02-3.18 is installed
  • OR xen-doc-html-4.12.3_02-3.18 is installed
  • OR xen-libs-4.12.3_02-3.18 is installed
  • OR xen-libs-32bit-4.12.3_02-3.18 is installed
  • OR xen-tools-4.12.3_02-3.18 is installed
  • OR xen-tools-domU-4.12.3_02-3.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP2 is installed
  • AND apache-commons-compress-1.21-3.3.1 is installed
  • BACK