openSUSE Essential And Critical Security Patch Updates - Page 32
Find the information you need for your favorite open source distribution.
Find the information you need for your favorite open source distribution.
This update for gstreamer-plugins-bad fixes the following issues: CVE-2023-40474: Fixed integer overflow causing out of bounds writes when handling invalid uncompressed video (bsc#1215796).
This update for xerces-c fixes the following issues: CVE-2023-37536: Fixed an integer overflow that could have led to a out-of- bounds memory accesses (bsc#1216156).
This update for vim fixes the following issues: CVE-2023-5344: Heap-based Buffer Overflow in vim prior to 9.0.1969 (bsc#1215940)
This update for MozillaThunderbird fixes the following issues: Mozilla Thunderbird 115.5.0 MFSA 2023-52 (bsc#1217230)
This update for squashfs fixes the following issues: CVE-2015-4645,CVE-2015-4646: Multiple buffer overflows fixed in squashfs- tools (bsc#935380)
An update that fixes one vulnerability is now available.
This update for vim fixes the following issues: Updated to version 9.0 with patch level 2103, fixes the following security problems
This update for webkit2gtk3 fixes the following issues: Update to version 2.42.2 (bsc#1217210):
This update for poppler fixes the following issues: CVE-2019-9545: Fixed an uncontrolled recursion issue that could cause a crash (bsc#1128114).
This update for squid fixes the following issues: CVE-2023-46728: Remove gopher support (bsc#1216926). Fixed overread in HTTP request header parsing (bsc#1217274).
This update for fdo-client fixes the following issues: Removed build key via utils/keys_gen.sh. (bsc#1216293)
This update for fdo-client fixes the following issues: Removed build key via utils/keys_gen.sh. (bsc#1216293)
This update for MozillaFirefox fixes the following issues: Firefox Extended Support Release 115.5.0 ESR Placeholder changelog-entry (bsc#1217230)
This update for libxml2 fixes the following issues: CVE-2023-45322: Fixed a use-after-free in xmlUnlinkNode() in tree.c (bsc#1216129).
This update for maven, maven-resolver, sbt, xmvn fixes the following issues: CVE-2023-46122: Fixed an arbitrary file write when extracting a crafted zip file with sbt (bsc#1216529).
This update for python-Pillow fixes the following issues: CVE-2023-44271: Fixed uncontrolled resource consumption when textlength in an ImageDraw instance operates on a long text argument (bsc#1216894).
This update for strongswan fixes the following issues: CVE-2023-41913: Fixed a bug in charon-tkm related to handling DH public values that can lead to remote code execution (bsc#1216901).
This update for apache2-mod_jk fixes the following issues: Update to version 1.2.49: Apache Retrieve default request id from mod_unique_id. It can also be taken from an arbitrary environment variable by
This update for strongswan fixes the following issues: CVE-2023-41913: Fixed a bug in charon-tkm related to handling DH public values that can lead to remote code execution (bsc#1216901).
This update for python3-setuptools fixes the following issues: CVE-2022-40897: Fixed Regular Expression Denial of Service (ReDoS) in package_index.py (bsc#1206667).