Oval Definition:oval:org.opensuse.security:def:99870
Revision Date:2020-06-24Version:1
Title: (Important)
Description:

This update for curl fixes the following issues:

- CVE-2020-8177: Fixed an issue where curl could have been tricked by a malicious server to overwrite a local file when using the -J option (bsc#1173027). - CVE-2020-8169: Fixed an issue where could have led to partial password leak over DNS on HTTP redirect (bsc#1173026).
Family:unixClass:patch
Status:Reference(s):1171496
1171497
1171498
1171499
1173026
1173027
CVE-2020-11863
CVE-2020-11864
CVE-2020-11865
CVE-2020-11866
CVE-2020-8169
CVE-2020-8177
SUSE-SU-2020:1621-1
Platform(s):Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND libEMF1-1.0.7-3.3.1 is installed
  • Definition Synopsis
  • Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure is installed
  • AND Package Information
  • curl-7.66.0-4.3.1 is installed
  • OR libcurl4-7.66.0-4.3.1 is installed
  • BACK