openSUSE Security Update: update for libssh
______________________________________________________________________________

Announcement ID:    openSUSE-SU-2012:1620-1
Rating:             important
References:         #789827 
Cross-References:   CVE-2012-4559 CVE-2012-4560 CVE-2012-4561
                    CVE-2012-4562
Affected Products:
                    openSUSE 12.2
______________________________________________________________________________

   An update that fixes four vulnerabilities is now available.

Description:

   This update of libssh fixed various memory management
   issues that could have security implications (Code
   execution, Denial of Service).


Patch Instructions:

   To install this openSUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - openSUSE 12.2:

      zypper in -t patch openSUSE-2012-840

   To bring your system up-to-date, use "zypper patch".


Package List:

   - openSUSE 12.2 (i586 x86_64):

      libssh-debugsource-0.5.2-2.4.1
      libssh-devel-0.5.2-2.4.1
      libssh-devel-doc-0.5.2-2.4.1
      libssh4-0.5.2-2.4.1
      libssh4-debuginfo-0.5.2-2.4.1


References:

   https://www.suse.com/security/cve/CVE-2012-4559.html
   https://www.suse.com/security/cve/CVE-2012-4560.html
   https://www.suse.com/security/cve/CVE-2012-4561.html
   https://www.suse.com/security/cve/CVE-2012-4562.html
   https://bugzilla.novell.com/789827

openSUSE: 2012:1620-1: important: libssh

December 7, 2012
An update that fixes four vulnerabilities is now available

Description

This update of libssh fixed various memory management issues that could have security implications (Code execution, Denial of Service).

 

Patch

Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 12.2: zypper in -t patch openSUSE-2012-840 To bring your system up-to-date, use "zypper patch".


Package List

- openSUSE 12.2 (i586 x86_64): libssh-debugsource-0.5.2-2.4.1 libssh-devel-0.5.2-2.4.1 libssh-devel-doc-0.5.2-2.4.1 libssh4-0.5.2-2.4.1 libssh4-debuginfo-0.5.2-2.4.1


References

https://www.suse.com/security/cve/CVE-2012-4559.html https://www.suse.com/security/cve/CVE-2012-4560.html https://www.suse.com/security/cve/CVE-2012-4561.html https://www.suse.com/security/cve/CVE-2012-4562.html https://bugzilla.novell.com/789827


Severity
Announcement ID: openSUSE-SU-2012:1620-1
Rating: important
Affected Products: openSUSE 12.2 .

Related News