SuSE: 2014:0931-1: important: libtasn1
Summary
libtasn1 has been updated to fix three security issues:
* asn1_get_bit_der() could have returned negative bit length
(CVE-2014-3468)
* Multiple boundary check issues could have allowed DoS (CVE-2014-3467)
* Possible DoS by NULL pointer dereference in asn1_read_value_type
(CVE-2014-3469)
Security Issues:
* CVE-2014-3468
References
#880735 #880737 #880738
Cross- CVE-2014-3467 CVE-2014-3468 CVE-2014-3469
Affected Products:
SUSE Linux Enterprise Software Development Kit 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Desktop 11 SP3
https://www.suse.com/security/cve/CVE-2014-3467.html
https://www.suse.com/security/cve/CVE-2014-3468.html
https://www.suse.com/security/cve/CVE-2014-3469.html
https://bugzilla.novell.com/880735
https://bugzilla.novell.com/880737
https://bugzilla.novell.com/880738
https://scc.suse.com:443/patches/