Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2020:3064-1 Moderate: Zeromq Memory Leak and Stack Overflow

suse
Calendar Grey October 28, 2020
Dist Suse Esm H88
Security update for zeromq addresses memory leak and stack overflow vulnerabilities affecting SUSE systems.
An update that contains security fixes can now be installed

Summary

This update for zeromq fixes the following issues: - Fixed a memory leak in client induced by malicious server(s) without CURVE/ZAP (bsc#1176257) - Fixed a stack overflow in PUB/XPUB subscription store (bsc#1176258) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Manager Tools 12: zypper in -t patch SUSE-SLE-Manager-Tools-12-2020-3064=1 - SUSE Manager Server 3.2: zypper in -t patch SUSE-SUSE-Manager-Server-3.2-2020-3064=1 - SUSE Manager Proxy 3.2: zypper in -t patch SUSE-SUSE-Manager-Proxy-3.2-2020-3064=1 - SUSE Linux Enterprise Workstation Extension 12-SP5: zypper in -t patch SUSE-SLE-WE-12-SP5-2020-3064=1

References

#1176257 #1176258

Affected Products:

SUSE Manager Tools 12

SUSE Manager Server 3.2

SUSE Manager Proxy 3.2

SUSE Linux Enterprise Workstation Extension 12-SP5

SUSE Linux Enterprise Software Development Kit 12-SP5

SUSE Linux Enterprise Point of Sale 12-SP2

SUSE Linux Enterprise Module for Advanced Systems Management 12

SUSE Enterprise Storage 5

https://bugzilla.suse.com/1176257

https://bugzilla.suse.com/1176258

Announcement ID: SUSE-SU-2020:3064-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here