Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

SUSE: 2019:1733-1 Low Severity: elfutils Denial Of Service Issue

suse
Calendar Grey July 3, 2019
Dist Suse Esm H88
SUSE Security Update: Security update for elfutils _________________________________________________
An update that fixes 15 vulnerabilities is now available

Summary

This update for elfutils fixes the following issues: Security issues fixed: - CVE-2018-16403: Fixed a heap-based buffer over-read that could have led to Denial of Service (bsc#1107067). - CVE-2016-10254: Fixed a memory allocation failure in alloxate_elf (bsc#1030472). - CVE-2019-7665: NT_PLATFORM core file note should be a zero terminated string (bsc#1125007). - CVE-2016-10255: Fixed a memory allocation failure in libelf_set_rawdata_wrlock (bsc#1030476). - CVE-2019-7150: Added a missing check in dwfl_segment_report_module which could have allowed truncated files to be read (bsc#1123685). - CVE-2018-16062: Fixed a heap-buffer-overflow (bsc#1106390). - CVE-2017-7611: Fixed a heap-based buffer over-read that could have led to Denial of Service (bsc#1033088).

References

#1030472 #1030476 #1033084 #1033085 #1033087

#1033088 #1033089 #1033090 #1106390 #1107067

#1111973 #1112723 #1112726 #1123685 #1125007

Cross- CVE-2016-10254 CVE-2016-10255 CVE-2017-7607

CVE-2017-7608 CVE-2017-7610 CVE-2017-7611

CVE-2017-7612 CVE-2017-7613 CVE-2018-16062

CVE-2018-16403 CVE-2018-18310 CVE-2018-18520

CVE-2018-18521 CVE-2019-7150 CVE-2019-7665

Affected Products:

SUSE Linux Enterprise Software Development Kit 12-SP4

SUSE Linux Enterprise Software Development Kit 12-SP3

SUSE Linux Enterprise Server 12-SP4

SUSE Linux Enterprise Server 12-SP3

SUSE Linux Enterprise Desktop 12-SP4

SUSE Linux Enterprise Desktop 12-SP3

SUSE CaaS Platform 3.0

OpenStack Cloud Magnum Or...

Read the Full Advisory

Severity
low
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:1733-1
Rating: low

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here