Security update for xdelta3
SUSE Patch
security@suse.de
SUSE Security Team
openSUSE-SU-2016:0524-1
Final
1
1
2016-02-20T08:31:43Z
current
2016-02-20T08:31:43Z
2016-02-20T08:31:43Z
cve-database/bin/generate-cvrf.pl
2017-02-24T01:00:00Z
Security update for xdelta3
This update for xdelta3 fixes the following security issue:
- CVE-2014-9765: Fixed buffer overflow in main_get_appheader. (boo#965791)
The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)
http://lists.opensuse.org/opensuse-updates/2016-02/msg00125.html
E-Mail link for openSUSE-SU-2016:0524-1
https://www.suse.com/support/security/rating/
SUSE Security Ratings
openSUSE 13.2
xdelta3-3.0.8-2.3.1
xdelta3-3.0.8-2.3.1 as a component of openSUSE 13.2
Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file.
CVE-2014-9765
openSUSE 13.2:xdelta3-3.0.8-2.3.1
moderate
Please Install the update.
http://lists.opensuse.org/opensuse-updates/2016-02/msg00125.html
https://www.suse.com/security/cve/CVE-2014-9765.html
CVE-2014-9765
https://bugzilla.suse.com/965791
SUSE Bug 965791