ALT-BU-2018-3589-1
Branch sisyphus update bulletin.
Package ocfs2-tools updated to version 1.8.5-alt3.0378c47 for branch sisyphus in task 216612.
Closed bugs
ocfs2-tools: Необходимо обеспечить совместимость службы с systemd
Closed vulnerabilities
BDU:2019-00676
Уязвимость функции bfd_elf32_swap_phdr_in программного средства разработки GNU Binutils, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2018-19931
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is a heap-based buffer overflow in bfd_elf32_swap_phdr_in in elfcode.h because the number of program headers is not restricted.
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html
- http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html
- http://www.securityfocus.com/bid/106144
- https://security.gentoo.org/glsa/201908-01
- https://security.netapp.com/advisory/ntap-20190221-0004/
- https://sourceware.org/bugzilla/show_bug.cgi?id=23942
- https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=5f60af5d24d181371d67534fa273dd221df20c07
- https://usn.ubuntu.com/4336-1/
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html
- http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html
- http://www.securityfocus.com/bid/106144
- https://security.gentoo.org/glsa/201908-01
- https://security.netapp.com/advisory/ntap-20190221-0004/
- https://sourceware.org/bugzilla/show_bug.cgi?id=23942
- https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=5f60af5d24d181371d67534fa273dd221df20c07
- https://usn.ubuntu.com/4336-1/
Modified: 2024-11-21
CVE-2018-19932
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html
- http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html
- http://www.securityfocus.com/bid/106144
- https://security.gentoo.org/glsa/201908-01
- https://security.netapp.com/advisory/ntap-20190221-0004/
- https://sourceware.org/bugzilla/show_bug.cgi?id=23932
- https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=beab453223769279cc1cef68a1622ab8978641f7
- https://usn.ubuntu.com/4336-1/
- http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00072.html
- http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00008.html
- http://www.securityfocus.com/bid/106144
- https://security.gentoo.org/glsa/201908-01
- https://security.netapp.com/advisory/ntap-20190221-0004/
- https://sourceware.org/bugzilla/show_bug.cgi?id=23932
- https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git%3Bh=beab453223769279cc1cef68a1622ab8978641f7
- https://usn.ubuntu.com/4336-1/
