SuSE: 2014:0904-1: important: lzo
Summary
lzo was updated to fix a potential denial of service issue or possible
remote code execution by allowing an attacker, if the LZO decompression
algorithm is used in a threaded or kernel context, to corrupt memory
structures that control the flow of execution in other contexts.
(CVE-2014-4607)
Security Issue reference:
* CVE-2014-4607
References
#883947
Cross- CVE-2014-4607
Affected Products:
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Desktop 11 SP3
https://www.suse.com/security/cve/CVE-2014-4607.html
https://bugzilla.novell.com/883947
https://scc.suse.com:443/patches/