[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:2201-1 -- SLES libplist

ID: oval:org.secpod.oval:def:89044681Date: (C)2021-07-07   (M)2022-10-10
Class: PATCHFamily: unix




This update for libplist fixes the following issues: Security issues fixed: - CVE-2017-6439: Heap-based buffer overflow in the parse_string_node function. - CVE-2017-6438: Heap-based buffer overflow in the parse_unicode_node function. - CVE-2017-6437: The base64encode function in base64.c allows local users to cause denial of service via a crafted plist file. - CVE-2017-6436: Integer overflow in parse_string_node. - CVE-2017-6435: Crafted plist file could lead to Heap-buffer overflow

Platform:
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP2
Product:
libplist
Reference:
SUSE-SU-2017:2201-1
CVE-2017-6435
CVE-2017-6436
CVE-2017-6437
CVE-2017-6438
CVE-2017-6439
CVE    5
CVE-2017-6435
CVE-2017-6436
CVE-2017-6439
CVE-2017-6437
...
CPE    3
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/a:libimobiledevice:libplist
cpe:/o:suse:suse_linux_enterprise_server:12:sp2

© SecPod Technologies