Vulnerability Name:

CVE-2018-20340 (CCN-161615)

Assigned:2018-02-08
Published:2018-02-08
Updated:2019-12-05
Summary:Yubico libu2f-host 1.1.6 contains unchecked buffers in devs.c, which could enable a malicious token to exploit a buffer overflow. An attacker could use this to attempt to execute malicious code using a crafted USB device masquerading as a security token on a computer where the affected library is currently in use. It is not possible to perform this attack with a genuine YubiKey.
CVSS v3 Severity:6.8 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
5.9 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Physical
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.8 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
5.9 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Physical
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2018-20340

Source: MISC
Type: UNKNOWN
https://blog.inhq.net/posts/yubico-libu2f-host-vuln-part1/

Source: CONFIRM
Type: Release Notes, Vendor Advisory
https://developers.yubico.com/libu2f-host/Release_Notes.html

Source: XF
Type: UNKNOWN
yubico-cve201820340-bo(161615)

Source: MISC
Type: Mailing List, Third Party Advisory
https://seclists.org/bugtraq/2019/Feb/23

Source: GENTOO
Type: UNKNOWN
GLSA-202004-15

Source: MISC
Type: Third Party Advisory
https://www.debian.org/security/2019/dsa-4389

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2018-20340

Source: CCN
Type: YSA-2019-01
Security Advisory 2019-02-08 – Unchecked Buffer in libu2f-host

Source: CONFIRM
Type: Patch, Vendor Advisory
https://www.yubico.com/support/security-advisories/ysa-2019-01/

Vulnerable Configuration:Configuration 1:
  • cpe:/a:yubico:libu2f-host:1.1.6:*:*:*:*:*:*:*

  • Configuration 2:
  • cpe:/o:debian:debian_linux:9.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:yubico:libu2f-host:1.1.6:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201820340
    V
    CVE-2018-20340
    2023-06-22
    oval:org.opensuse.security:def:7686
    P
    libu2f-host-devel-1.1.10-3.9.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7553
    P
    libX11-6-1.6.5-150000.3.27.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7575
    P
    libarchive-devel-3.5.1-150400.3.12.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:55528
    P
    Security update for openssl-1_1 (Moderate)
    2023-04-04
    oval:org.opensuse.security:def:51563
    P
    Security update for grub2 (Important)
    2022-11-21
    oval:org.opensuse.security:def:807
    P
    Security update for python3 (Important)
    2022-10-06
    oval:org.opensuse.security:def:702
    P
    Security update for java-1_8_0-openjdk (Important)
    2022-08-19
    oval:org.opensuse.security:def:3603
    P
    libhivex0-1.3.10-4.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3192
    P
    libjavascriptcoregtk-3_0-0-2.4.11-23.20 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3270
    P
    libu2f-host0-1.1.6-3.5.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3690
    P
    libu2f-host0-1.1.6-3.5.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3180
    P
    libgraphite2-3-1.3.1-10.3.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3094
    P
    gstreamer-plugins-base-1.8.3-13.3.2 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3417
    P
    zypper-1.13.51-21.26.4 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:94529
    P
    cryptsetup-2.4.3-150400.1.110 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94724
    P
    libu2f-host-devel-1.1.10-3.9.1 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95245
    P
    Security update for webkit2gtk3 (Important)
    2022-06-14
    oval:org.opensuse.security:def:215
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:6016
    P
    Security update for git (Important)
    2022-04-22
    oval:org.opensuse.security:def:101958
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3) (Important)
    2022-04-14
    oval:org.opensuse.security:def:1310
    P
    Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP3) (Important)
    2022-04-14
    oval:org.opensuse.security:def:1144
    P
    Security update for xorg-x11-server (Important)
    2021-12-14
    oval:org.opensuse.security:def:6717
    P
    Security update for the Linux Kernel (Live Patch 22 for SLE 15) (Important)
    2021-11-19
    oval:org.opensuse.security:def:8672
    P
    Security update for java-11-openjdk (Important)
    2021-11-16
    oval:org.opensuse.security:def:8853
    P
    Security update for dnsmasq (Moderate)
    2021-10-27
    oval:org.opensuse.security:def:55254
    P
    Security update for webkit2gtk3 (Important)
    2021-10-06
    oval:org.opensuse.security:def:63212
    P
    libecpg6-10.6-6.25 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:96994
    P
    apache2-mod_jk-1.2.43-3.3.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:23665
    P
    Security update for file (Important)
    2021-09-02
    oval:org.opensuse.security:def:9577
    P
    Security update for spice-vdagent (Moderate)
    2021-08-20
    oval:org.opensuse.security:def:8828
    P
    Security update for spice-vdagent (Moderate)
    2021-08-20
    oval:org.opensuse.security:def:47828
    P
    minicom-2.7-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47827
    P
    memcached-1.4.39-4.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15089
    P
    libu2f-host0-1.1.6-3.5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48156
    P
    libnetpbm11-10.66.3-8.7.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47083
    P
    libtag1-1.9.1-1.218 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47842
    P
    pam_krb5-2.4.4-4.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48288
    P
    python-requests-2.18.2-8.4.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48209
    P
    libu2f-host0-1.1.6-3.5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47963
    P
    bind-9.11.2-3.10.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47134
    P
    python-2.7.9-24.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:63448
    P
    php7-embed-7.4.6-1.11 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63344
    P
    libosinfo-devel-1.7.1-1.52 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63343
    P
    libopenvswitch-2_14-0-2.14.2-17.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:62298
    P
    python3-PyYAML-5.4.1-1.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:101242
    P
    wavpack-5.4.0-4.9.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:1948
    P
    perl-YAML-LibYAML-0.69-3.3.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62297
    P
    python3-Jinja2-2.10.1-3.10.2 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62233
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:71974
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62064
    P
    dracut-049.1+suse.187.g63c1504f-3.27.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62777
    P
    libcairo2-32bit-1.16.0-1.55 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62339
    P
    tpm2.0-tools-4.3.0-2.3 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62321
    P
    ruby2.5-rubygem-nokogiri-1.8.5-3.6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:69899
    P
    Security update for qemu (Important)
    2021-08-02
    oval:org.opensuse.security:def:51625
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:8626
    P
    Security update for MozillaFirefox (Important)
    2021-07-27
    oval:org.opensuse.security:def:9555
    P
    Security update for the Linux Kernel (Important)
    2021-07-21
    oval:org.opensuse.security:def:111550
    P
    Security update for libu2f-host (Moderate)
    2021-07-10
    oval:org.opensuse.security:def:23609
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-06-18
    oval:org.opensuse.security:def:6915
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP1) (Important)
    2021-06-18
    oval:org.opensuse.security:def:8604
    P
    Security update for squid (Important)
    2021-06-11
    oval:org.opensuse.security:def:48380
    P
    busybox-1.21.1-3.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:2451
    P
    gstreamer-plugins-ugly-1.12.5-1.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48953
    P
    libwebkit2gtk3-lang-2.20.3-2.23.8 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:2473
    P
    xorg-x11-server-wayland-1.19.6-6.19 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48826
    P
    colord-1.3.3-12.13 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12682
    P
    pam_yubico-2.26-1.25 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12712
    P
    rpm-32bit-4.11.2-16.16.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46445
    P
    java-1_7_0-openjdk-1.7.0.65-3.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:2455
    P
    libavcodec-devel-3.4.2-2.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48528
    P
    libnghttp2-14-1.7.1-1.84 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48969
    P
    typelib-1_0-EvinceDocument-3_0-3.20.2-6.22.9 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48968
    P
    telepathy-idle-0.2.0-1.62 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13641
    P
    libproxy1-0.4.11-11.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13663
    P
    libvorbis-doc-1.3.3-8.23 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12758
    P
    xorg-x11-libs-7.6-45.14 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:63546
    P
    libmwaw-0_3-3-0.3.13-2.25 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:2461
    P
    libpskc-devel-2.6.2-1.15 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48742
    P
    libqt4-sql-mysql-32bit-4.8.6-4.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12690
    P
    perl-Tk-804.031-3.82 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46380
    P
    apache2-2.4.10-6.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:8596
    P
    Security update for pam_radius (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48888
    P
    typelib-1_0-EvinceDocument-3_0-3.20.1-5.66 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:111406
    P
    Security update for libu2f-host (Moderate)
    2021-05-28
    oval:org.opensuse.security:def:6670
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15) (Important)
    2021-05-25
    oval:org.opensuse.security:def:117423
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:6902
    P
    Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP1) (Important)
    2021-05-25
    oval:org.opensuse.security:def:66786
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:75854
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:5697
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:107908
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:67105
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:76173
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:108624
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:64506
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:73628
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:101433
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:64692
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:73814
    P
    Security update for libu2f-host (Moderate)
    2021-05-25
    oval:org.opensuse.security:def:56997
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:6893
    P
    Security update for the Linux Kernel (Important)
    2021-05-18
    oval:org.opensuse.security:def:8753
    P
    Security update for java-11-openjdk (Important)
    2021-05-11
    oval:org.opensuse.security:def:45307
    P
    Security update for samba (Important)
    2021-04-29
    oval:org.opensuse.security:def:6884
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP1) (Important)
    2021-04-28
    oval:org.opensuse.security:def:8734
    P
    Security update for fwupdate (Important)
    2021-04-08
    oval:org.opensuse.security:def:8917
    P
    Security update for libass (Important)
    2021-03-24
    oval:org.opensuse.security:def:6732
    P
    Security update for the Linux Kernel (Live Patch 19 for SLE 15) (Important)
    2021-03-17
    oval:org.opensuse.security:def:8719
    P
    Security update for libsolv, libzypp, yast2-installation, zypper (Moderate)
    2021-03-11
    oval:org.opensuse.security:def:8904
    P
    Security update for kernel-firmware (Important)
    2021-03-03
    oval:org.opensuse.security:def:69794
    P
    Security update for MozillaFirefox (Important)
    2021-03-02
    oval:org.opensuse.security:def:8895
    P
    Security update for php7 (Important)
    2021-02-24
    oval:org.opensuse.security:def:8886
    P
    Security update for subversion (Important)
    2021-02-10
    oval:org.opensuse.security:def:23600
    P
    Security update for ImageMagick (Important)
    2021-01-22
    oval:org.opensuse.security:def:49465
    P
    Security update for nodejs10 (Moderate)
    2021-01-12
    oval:org.opensuse.security:def:23975
    P
    Security update for java-1_8_0-ibm (Moderate)
    2021-01-05
    oval:org.opensuse.security:def:23905
    P
    Security update for flac (Moderate)
    2021-01-04
    oval:org.opensuse.security:def:56923
    P
    Security update for cyrus-sasl (Important)
    2020-12-28
    oval:org.opensuse.security:def:54697
    P
    Security update for clamav (Important)
    2020-12-22
    oval:org.opensuse.security:def:6851
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15 SP1) (Important)
    2020-12-07
    oval:org.opensuse.security:def:2532
    P
    icedtea-web-1.7.1-5.13 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107242
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61891
    P
    libtasn1-4.13-4.5.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12914
    P
    gzip-1.10-2.12 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62979
    P
    perl-doc-5.26.1-7.9.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61896
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:48984
    P
    finch-2.12.0-3.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71637
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62537
    P
    libSoundTouch0-1.8.0-3.11.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2502
    P
    libpurple-2.13.0-3.35 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12820
    P
    apache-commons-beanutils-1.9.2-3.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62498
    P
    wavpack-5.1.0-2.17 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2542
    P
    libpoppler73-0.62.0-2.33 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12939
    P
    libICE6-1.0.8-12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63117
    P
    python-azure-agent-2.2.45-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2487
    P
    gnome-online-accounts-3.26.2-3.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49055
    P
    sane-backends-32bit-1.0.24-3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62671
    P
    libgypsy-devel-0.9-2.30 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2526
    P
    freerdp-2.0.0~rc4-13.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12981
    P
    libevent-2_0-5-2.0.21-6.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61868
    P
    libpq5-12.2-6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12839
    P
    bluez-5.13-5.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63586
    P
    libntfs-3g87-2016.2.22-3.3.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61867
    P
    libpoppler-cpp0-0.79.0-1.89 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12990
    P
    libgme0-0.6.0-5.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116800
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:46351
    P
    facter-2.0.2-1.6 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:48987
    P
    gd-32bit-2.1.0-24.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:93863
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2540
    P
    libopencv3_3-3.3.1-6.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13003
    P
    libjansson4-2.12-3.5.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63641
    P
    openconnect-7.08-6.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2493
    P
    kernel-default-extra-4.12.14-195.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13083
    P
    libu2f-host0-1.1.6-3.5.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:100576
    P
    libu2f-host-devel-1.1.6-3.6.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12805
    P
    libpacemaker3-1.1.21+20190809.bf34b44fa-1.17 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62889
    P
    bsdtar-3.3.2-3.8.4 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:24258
    P
    Security update for ipmitool (Important)
    2020-12-01
    oval:org.opensuse.security:def:50331
    P
    Security update for wpa_supplicant (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54286
    P
    libmspack0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49958
    P
    librelp-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37179
    P
    libXvnc1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:63691
    P
    Security update for bluez (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66543
    P
    libu2f-host-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45946
    P
    Security update for the Linux Kernel (Live Patch 29 for SLE 12 SP3) (Important)
    2020-12-01
    oval:org.opensuse.security:def:55454
    P
    Security update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24296
    P
    Security update for openssh (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6751
    P
    libraw9 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49114
    P
    gstreamer on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54803
    P
    gvim on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38343
    P
    libpango-1_0-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37486
    P
    libX11-6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23856
    P
    Security update for apache2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:63670
    P
    Security update for hostinfo, supportutils (Important)
    2020-12-01
    oval:org.opensuse.security:def:50118
    P
    apache-commons-daemon on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49248
    P
    libu2f-host-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6602
    P
    fontconfig on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54124
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49563
    P
    libmpg123-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55362
    P
    python-imaging on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55566
    P
    Recommended update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54123
    P
    strongswan on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36942
    P
    libqt4-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50183
    P
    freerdp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45728
    P
    Security update for ntp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24118
    P
    Security update for perl (Important)
    2020-12-01
    oval:org.opensuse.security:def:74106
    P
    Security update for LibVNCServer (Important)
    2020-12-01
    oval:org.opensuse.security:def:63726
    P
    Security update for libu2f-host (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37594
    P
    libtcnative-1-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54524
    P
    libXrandr2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50048
    P
    apache2-mod_jk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50214
    P
    MozillaThunderbird on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:74232
    P
    Security update for libu2f-host (Low)
    2020-12-01
    oval:org.opensuse.security:def:37236
    P
    libpng12-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46153
    P
    Security update for squid (Important)
    2020-12-01
    oval:org.opensuse.security:def:37633
    P
    pam on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6826
    P
    python-pywbem on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50385
    P
    Security update for libu2f-host (Low)
    2020-12-01
    oval:org.opensuse.security:def:49319
    P
    python3-targetcli-fb on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54969
    P
    openslp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36847
    P
    gpg2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37545
    P
    libldap-2_4-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37661
    P
    python-requests on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66451
    P
    libXxf86dga-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36846
    P
    gnutls on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45420
    P
    Security update for tcpdump (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:63804
    P
    Security update for dhcp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6594
    P
    empathy on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6624
    P
    gstreamer on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73116
    P
    ldb-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54146
    P
    xorg-x11-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49720
    P
    vorbis-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46292
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:55647
    P
    Security update for ldb, samba, talloc, tdb, tevent (Important)
    2020-12-01
    oval:org.opensuse.security:def:38385
    P
    libu2f-host0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37078
    P
    binutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73234
    P
    libu2f-host-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45812
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:24167
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49194
    P
    libminizip1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24934
    P
    Security update for systemd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:64012
    P
    Security update for ipmitool (Important)
    2020-12-01
    oval:org.opensuse.security:def:50287
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:37326
    P
    ruby on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24966
    P
    Security update for libu2f-host (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45295
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23783
    P
    Security update for libxslt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46233
    P
    Security update for clamav (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45294
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:64054
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:24246
    P
    Security update for libexif (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36858
    P
    ipsec-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37705
    P
    xdg-utils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45604
    P
    Security update for the Linux Kernel (Live Patch 16 for SLE 12 SP3) (Important)
    2020-12-01
    oval:org.opensuse.security:def:63910
    P
    Security update for ovmf (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:64166
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:124866
    P
    Security update for libu2f-host (Moderate)
    2019-07-04
    oval:org.opensuse.security:def:126280
    P
    Security update for libu2f-host (Moderate)
    2019-07-04
    oval:org.opensuse.security:def:88704
    P
    Security update for libu2f-host (Moderate)
    2019-07-04
    oval:org.opensuse.security:def:79631
    P
    Security update for libu2f-host (Moderate)
    2019-07-04
    oval:org.opensuse.security:def:109856
    P
    Security update for libu2f-host (Low)
    2019-05-30
    oval:com.ubuntu.disco:def:2018203400000000
    V
    CVE-2018-20340 on Ubuntu 19.04 (disco) - medium.
    2019-03-21
    oval:com.ubuntu.bionic:def:201820340000
    V
    CVE-2018-20340 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-03-21
    oval:com.ubuntu.cosmic:def:2018203400000000
    V
    CVE-2018-20340 on Ubuntu 18.10 (cosmic) - medium.
    2019-03-21
    oval:com.ubuntu.cosmic:def:201820340000
    V
    CVE-2018-20340 on Ubuntu 18.10 (cosmic) - medium.
    2019-03-21
    oval:com.ubuntu.bionic:def:2018203400000000
    V
    CVE-2018-20340 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-03-21
    oval:com.ubuntu.xenial:def:201820340000
    V
    CVE-2018-20340 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-03-21
    oval:com.ubuntu.xenial:def:2018203400000000
    V
    CVE-2018-20340 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-03-21
    BACK
    yubico libu2f-host 1.1.6
    debian debian linux 9.0
    yubico libu2f-host 1.1.6