[SUSE-SU-2023:2477-1] Security update for libcares2

Severity Important
Affected Packages 9
CVEs 4

Security update for libcares2

This update for libcares2 fixes the following issues:

  • CVE-2023-32067: Fixed a denial of service that could be triggered by a 0-byte UDP payload (bsc#1211604).
  • CVE-2023-31147: Fixed an insufficient randomness in generation of DNS query IDs (bsc#1211605).
  • CVE-2023-31130: Fixed a buffer underflow when configuring specific IPv6 addresses (bsc#1211606).
  • CVE-2023-31124: Fixed a build issue when cross-compiling that could lead to insufficient randomness (bsc#1211607).
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-12&sp=5 suse libcares2 < 1.9.1-9.12.1 sles-12 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-12&sp=4 suse libcares2 < 1.9.1-9.12.1 sles-12 x86_64
Affected pkg:rpm/suse/libcares2?arch=x86_64&distro=sles-12&sp=2 suse libcares2 < 1.9.1-9.12.1 sles-12 x86_64
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=sles-12&sp=5 suse libcares2 < 1.9.1-9.12.1 sles-12 s390x
Affected pkg:rpm/suse/libcares2?arch=s390x&distro=sles-12&sp=4 suse libcares2 < 1.9.1-9.12.1 sles-12 s390x
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-12&sp=5 suse libcares2 < 1.9.1-9.12.1 sles-12 ppc64le
Affected pkg:rpm/suse/libcares2?arch=ppc64le&distro=sles-12&sp=4 suse libcares2 < 1.9.1-9.12.1 sles-12 ppc64le
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-12&sp=5 suse libcares2 < 1.9.1-9.12.1 sles-12 aarch64
Affected pkg:rpm/suse/libcares2?arch=aarch64&distro=sles-12&sp=4 suse libcares2 < 1.9.1-9.12.1 sles-12 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...