Oval Definition:oval:org.opensuse.security:def:69327
Revision Date:2020-12-01Version:1
Title:Security update for freetds (Moderate)
Description:

This update for freetds to 1.1.36 fixes the following issues:

Security issue fixed:

- CVE-2019-13508: Fixed a heap overflow that could have been caused by malicious servers sending UDT types over protocol version 5.0 (bsc#1141132).

Non-security issues fixed:

- Enabled Kerberos support - Version update to 1.1.36: * Default TDS protocol version is now 'auto' * Improved UTF-8 performances * TDS Pool Server is enabled * MARS support is enabled * NTLMv2 is enabled * See NEWS and ChangeLog for a complete list of changes
Family:unixClass:patch
Status:Reference(s):1104129
1126068
1126069
1133185
1141132
CVE-2018-5740
CVE-2018-5743
CVE-2018-5745
CVE-2019-13508
CVE-2019-6465
SUSE-SU-2019:1407-1
SUSE-SU-2020:1417-2
Platform(s):SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • freetds-1.1.36-3.3 is installed
  • OR libsybdb5-1.1.36-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • bind-9.11.2-12.11 is installed
  • OR bind-chrootenv-9.11.2-12.11 is installed
  • OR bind-doc-9.11.2-12.11 is installed
  • BACK