[SUSE-SU-2018:0200-1] Security update for libevent

Severity Moderate
Affected Packages 10
CVEs 3

Security update for libevent

This update for libevent fixes the following security issues:

  • CVE-2016-10195: DNS remote stack overread vulnerability (bsc#1022917)
  • CVE-2016-10196: stack/buffer overflow in evutil_parse_sockaddr_port() (bsc#1022918)
  • CVE-2016-10197: out-of-bounds read in search_make_new() (bsc#1022919)
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/libevent-2_0-5?arch=x86_64&distro=sles-12&sp=3 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 x86_64
Affected pkg:rpm/suse/libevent-2_0-5?arch=x86_64&distro=sles-12&sp=2 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 x86_64
Affected pkg:rpm/suse/libevent-2_0-5?arch=x86_64&distro=sled-12&sp=3 suse libevent-2_0-5 < 2.0.21-6.3.1 sled-12 x86_64
Affected pkg:rpm/suse/libevent-2_0-5?arch=x86_64&distro=sled-12&sp=2 suse libevent-2_0-5 < 2.0.21-6.3.1 sled-12 x86_64
Affected pkg:rpm/suse/libevent-2_0-5?arch=s390x&distro=sles-12&sp=3 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 s390x
Affected pkg:rpm/suse/libevent-2_0-5?arch=s390x&distro=sles-12&sp=2 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 s390x
Affected pkg:rpm/suse/libevent-2_0-5?arch=ppc64le&distro=sles-12&sp=3 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 ppc64le
Affected pkg:rpm/suse/libevent-2_0-5?arch=ppc64le&distro=sles-12&sp=2 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 ppc64le
Affected pkg:rpm/suse/libevent-2_0-5?arch=aarch64&distro=sles-12&sp=3 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 aarch64
Affected pkg:rpm/suse/libevent-2_0-5?arch=aarch64&distro=sles-12&sp=2 suse libevent-2_0-5 < 2.0.21-6.3.1 sles-12 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...