[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2019:2265-1 -- SLES libsolv, libzypp, zypper, perl-solv, python-solv

ID: oval:org.secpod.oval:def:89003100Date: (C)2021-02-27   (M)2024-05-16
Class: PATCHFamily: unix




This update for libsolv, libzypp and zypper fixes the following issues: libsolv was updated to version 0.6.36 and fixes the following issues: Security issues fixed: - CVE-2018-20532: Fixed a NULL pointer dereference in testcase_read . - CVE-2018-20533: Fixed a NULL pointer dereference in testcase_str2dep_complex . - CVE-2018-20534: Fixed a NULL pointer dereference in pool_whatprovides . Non-security issues fixed: - Made cleandeps jobs on patterns work . - Fixed an issue multiversion packages that obsolete their own name . - Keep consistent package name if there are multiple alternatives . Fixes for libzypp: - Fixes a bug where locking the kernel was not possible - Fixes a file descriptor leak - Will now run file conflict check on dry-run Fixes for zypper: - Fixes a bug where the wrong exit code was set when refreshing repos if --root was used - Improved the displaying of locks - Fixes an issue where `https` repository urls caused an error prompt to appear twice - zypper will now always warn when no repositories are defined - Fixes bash completion option detection

Platform:
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP4
Product:
libsolv
libzypp
zypper
perl-solv
python-solv
Reference:
SUSE-SU-2019:2265-1
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
CVE    3
CVE-2018-20532
CVE-2018-20534
CVE-2018-20533
CPE    8
cpe:/a:opensuse:libzypp
cpe:/a:opensuse:zypper
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
...

© SecPod Technologies