[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:1740-3 -- SLES yaml-cpp, libyaml-cpp0_6

ID: oval:org.secpod.oval:def:89048580Date: (C)2023-04-08   (M)2023-04-08
Class: PATCHFamily: unix




This update for yaml-cpp fixes the following issues: * CVE-2018-20573: Fixed remote DOS via a crafted YAML file in function Scanner:EnsureTokensInQueue . * CVE-2018-20574: Fixed remote DOS via a crafted YAML file in function SingleDocParser:HandleFlowMap . * CVE-2019-6285: Fixed remote DOS via a crafted YAML file in function SingleDocParser::HandleFlowSequence . * CVE-2019-6292: Fixed DOS by stack consumption in singledocparser.cpp .

Platform:
SUSE Linux Enterprise Server 15 SP2
Product:
yaml-cpp
libyaml-cpp0_6
Reference:
SUSE-SU-2023:1740-3
CVE-2018-20573
CVE-2018-20574
CVE-2019-6285
CVE-2019-6292
CVE    4
CVE-2018-20574
CVE-2018-20573
CVE-2019-6285
CVE-2019-6292
...
CPE    3
cpe:/a:yaml-cpp_project:yaml-cpp
cpe:/o:suse:suse_linux_enterprise_server:15:sp2
cpe:/a:libyaml-cpp0_6:libyaml-cpp0_6

© SecPod Technologies