ALT-BU-2016-2917-1
Branch p8 update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2016-3191
The compile_branch function in pcre_compile.c in PCRE 8.x before 8.39 and pcre2_compile.c in PCRE2 before 10.22 mishandles patterns containing an (*ACCEPT) substring in conjunction with nested parentheses, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror, aka ZDI-CAN-3542.
- RHSA-2016:1025
- RHSA-2016:1025
- http://vcs.pcre.org/pcre?view=revision&revision=1631
- http://vcs.pcre.org/pcre?view=revision&revision=1631
- http://vcs.pcre.org/pcre2?view=revision&revision=489
- http://vcs.pcre.org/pcre2?view=revision&revision=489
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html
- 84810
- 84810
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1023886
- http://www-01.ibm.com/support/docview.wss?uid=isg3T1023886
- RHSA-2016:1132
- RHSA-2016:1132
- https://bto.bluecoat.com/security-advisory/sa128
- https://bto.bluecoat.com/security-advisory/sa128
- https://bugs.debian.org/815920
- https://bugs.debian.org/815920
- https://bugs.debian.org/815921
- https://bugs.debian.org/815921
- https://bugs.exim.org/show_bug.cgi?id=1791
- https://bugs.exim.org/show_bug.cgi?id=1791
- https://bugzilla.redhat.com/show_bug.cgi?id=1311503
- https://bugzilla.redhat.com/show_bug.cgi?id=1311503
- https://www.tenable.com/security/tns-2016-18
- https://www.tenable.com/security/tns-2016-18
Closed bugs
segfault если upowerd не запущен
Closed bugs
Не создаёт архивы tar.*
Package firefox-esr updated to version 45.3.0-alt1 for branch p8 in task 168274.
Closed vulnerabilities
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
No data currently available.
Package lm_sensors3 updated to version 3.4.0-alt1 for branch p8 in task 168300.
Closed bugs
obsolete lm_sensors
свежая версия lm_sensors с поддержкой IT8603E