[SUSE-SU-2023:2313-1] Security update for c-ares

Severity Important
Affected Packages 55
CVEs 4

Security update for c-ares

This update for c-ares fixes the following issues:

Update to version 1.19.1:

  • CVE-2023-32067: 0-byte UDP payload causes Denial of Service (bsc#1211604)
  • CVE-2023-31147: Insufficient randomness in generation of DNS query IDs (bsc#1211605)
  • CVE-2023-31130: Buffer Underwrite in ares_inet_net_pton() (bsc#1211606)
  • CVE-2023-31124: AutoTools does not set CARES_RANDOM_FILE during cross compilation (bsc#1211607)
  • Fix uninitialized memory warning in test
  • ares_getaddrinfo() should allow a port of 0
  • Fix memory leak in ares_send() on error
  • Fix comment style in ares_data.h
  • Fix typo in ares_init_options.3
  • Sync ax_pthread.m4 with upstream
  • Sync ax_cxx_compile_stdcxx_11.m4 with upstream to fix uclibc support
Package Affected Version
pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=slem-5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-micro-5.3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=slem-5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=s390x&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=ppc64le&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=ppc64le&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=slem-5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-micro-5.3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2-32bit?arch=x86_64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/libcares2-32bit?arch=x86_64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=x86_64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=x86_64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=s390x&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=s390x&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=ppc64le&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=ppc64le&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=aarch64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-utils?arch=aarch64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=s390x&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=s390x&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=3 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=2 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=1 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=opensuse-leap-15.5 < 1.19.1-150000.3.23.1
pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=opensuse-leap-15.4 < 1.19.1-150000.3.23.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=3 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=2 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-15&sp=1 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=slem-5 suse libcares2 < 1.19.1-150000.3.23.1 slem-5 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-micro-5.3 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-micro-5.3 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-15.5 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=opensuse-leap-15.4 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=3 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=2 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=sles-15&sp=1 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=slem-5 suse libcares2 < 1.19.1-150000.3.23.1 slem-5 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=opensuse-leap-15.5 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=opensuse-leap-15.4 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=3 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=2 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-15&sp=1 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=opensuse-leap-15.5 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=opensuse-leap-15.4 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=3 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=2 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-15&sp=1 suse libcares2 < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=slem-5 suse libcares2 < 1.19.1-150000.3.23.1 slem-5 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-micro-5.3 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-micro-5.3 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-15.5 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=opensuse-leap-15.4 suse libcares2 < 1.19.1-150000.3.23.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/libcares2-32bit?arch=x86_64&distro=opensuse-leap-15.5 suse libcares2-32bit < 1.19.1-150000.3.23.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/libcares2-32bit?arch=x86_64&distro=opensuse-leap-15.4 suse libcares2-32bit < 1.19.1-150000.3.23.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/c-ares-utils?arch=x86_64&distro=opensuse-leap-15.5 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/c-ares-utils?arch=x86_64&distro=opensuse-leap-15.4 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/c-ares-utils?arch=s390x&distro=opensuse-leap-15.5 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/c-ares-utils?arch=s390x&distro=opensuse-leap-15.4 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/c-ares-utils?arch=ppc64le&distro=opensuse-leap-15.5 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/c-ares-utils?arch=ppc64le&distro=opensuse-leap-15.4 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/c-ares-utils?arch=aarch64&distro=opensuse-leap-15.5 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/c-ares-utils?arch=aarch64&distro=opensuse-leap-15.4 suse c-ares-utils < 1.19.1-150000.3.23.1 opensuse-leap-15.4 aarch64
Affected pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=3 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=2 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=sles-15&sp=1 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 x86_64
Affected pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=opensuse-leap-15.5 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.5 x86_64
Affected pkg:rpm/suse/c-ares-devel?arch=x86_64&distro=opensuse-leap-15.4 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.4 x86_64
Affected pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=3 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=2 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/c-ares-devel?arch=s390x&distro=sles-15&sp=1 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 s390x
Affected pkg:rpm/suse/c-ares-devel?arch=s390x&distro=opensuse-leap-15.5 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.5 s390x
Affected pkg:rpm/suse/c-ares-devel?arch=s390x&distro=opensuse-leap-15.4 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.4 s390x
Affected pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=3 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=2 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=sles-15&sp=1 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 ppc64le
Affected pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=opensuse-leap-15.5 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.5 ppc64le
Affected pkg:rpm/suse/c-ares-devel?arch=ppc64le&distro=opensuse-leap-15.4 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.4 ppc64le
Affected pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=3 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=2 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=sles-15&sp=1 suse c-ares-devel < 1.19.1-150000.3.23.1 sles-15 aarch64
Affected pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=opensuse-leap-15.5 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.5 aarch64
Affected pkg:rpm/suse/c-ares-devel?arch=aarch64&distro=opensuse-leap-15.4 suse c-ares-devel < 1.19.1-150000.3.23.1 opensuse-leap-15.4 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...