Oval Definition:oval:org.opensuse.security:def:78843
Revision Date:2017-02-02Version:1
Title:Security update for cpio (Moderate)
Description:



This update for cpio fixes two issues.

This security issue was fixed:

- CVE-2016-2037: The cpio_safer_name_suffix function in util.c in cpio allowed remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file (bsc#963448).

This non-security issue was fixed:

- bsc#1020108: Always use 32 bit CRC to prevent checksum errors for files greater than 32MB
Family:unixClass:patch
Status:Reference(s):1020108
963448
CVE-2016-2037
SUSE-SU-2017:0366-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • cpio-2.11-32.1 is installed
  • OR cpio-lang-2.11-32.1 is installed
  • BACK