Oval Definition:oval:org.opensuse.security:def:84030
Revision Date:2020-09-16Version:1
Title:Security update for libsolv (Moderate)
Description:

This update for libsolv fixes the following issues:

This is a reissue of an existing libsolv update that also included libsolv-devel for LTSS products.

libsolv was updated to version 0.6.36 fixes the following issues:

Security issues fixed:

- CVE-2018-20532: Fixed a NULL pointer dereference in testcase_read() (bsc#1120629). - CVE-2018-20533: Fixed a NULL pointer dereference in testcase_str2dep_complex() (bsc#1120630). - CVE-2018-20534: Fixed a NULL pointer dereference in pool_whatprovides() (bsc#1120631).

Non-security issues fixed:

- Made cleandeps jobs on patterns work (bsc#1137977). - Fixed an issue multiversion packages that obsolete their own name (bsc#1127155). - Keep consistent package name if there are multiple alternatives (bsc#1131823).

Family:unixClass:patch
Status:Reference(s):1120629
1120630
1120631
1127155
1131823
1137977
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
SUSE-SU-2020:2660-1
Platform(s):SUSE OpenStack Cloud 8
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libsolv-devel-0.6.36-2.30.1 is installed
  • OR libsolv-tools-0.6.36-2.30.1 is installed
  • OR perl-solv-0.6.36-2.30.1 is installed
  • OR python-solv-0.6.36-2.30.1 is installed
  • BACK