Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

SUSE: 2021:581-1 Moderate: Curl Buffer Overflow in SUSE/SLE15

suse
Calendar Grey December 12, 2021
Dist Suse Esm H88
SUSE Container Update Notice covers security and suggested enhancements for the suse/sle15 container.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-RU-2021:3930-1 Released: Mon Dec 6 11:16:10 2021 Summary: Recommended update for curl Type: recommended Severity: moderate Advisory ID: SUSE-SU-2021:3946-1 Released: Mon Dec 6 14:57:42 2021 Summary: Security update for gmp Type: security Severity: moderate

References

References : 1192717 1192790 CVE-2021-43618

1192790

This update for curl fixes the following issues:

- Fix sftp via proxy failure in curl, by preventing libssh from creating socket (bsc#1192790)

1192717,CVE-2021-43618

This update for gmp fixes the following issues:

- CVE-2021-43618: Fixed buffer overflow via crafted input in mpz/inp_raw.c (bsc#1192717).

The following package changes have been done:

- libcurl4-7.60.0-28.1 updated

- libgmp10-6.1.2-4.9.1 updated

Container Advisory ID : SUSE-CU-2021:581-1
Container Tags : suse/sle15:15.0 , suse/sle15:15.0.4.22.487
Container Release : 4.22.487
Severity : moderate
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here