SuSE: 2013:1520-1: critical: icedtea-web
Summary
This icedtea-web update adds a missing fix for an
off-by-one heap-based buffer overflow.
bnc#840572: CVE-2013-4349: icedtea-web 1.4.1 fixes the
missing patch for CVE-2012-4540.
Security Issues:
* CVE-2012-4540
References
#840572
Cross- CVE-2012-4540 CVE-2013-4349
Affected Products:
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP2
https://www.suse.com/security/cve/CVE-2012-4540.html
https://www.suse.com/security/cve/CVE-2013-4349.html
https://bugzilla.novell.com/840572
https://login.microfocus.com/nidp/app/login
https://login.microfocus.com/nidp/app/login