SuSE: 2014:0955-1: important: lzo
Summary
lzo has been updated to fix a potential denial of service issue or
possible remote code execution by allowing an attacker, if the LZO
decompression algorithm is used in a threaded or kernel context, to
corrupt memory structures that control the flow of execution in other
contexts. (CVE-2014-4607)
Security Issues:
* CVE-2014-4607
References
#883947
Cross- CVE-2014-4607
Affected Products:
SUSE Linux Enterprise Server 11 SP2 LTSS
SUSE Linux Enterprise Server 11 SP1 LTSS
SUSE Linux Enterprise Server 10 SP4 LTSS
SUSE Linux Enterprise Server 10 SP3 LTSS
https://www.suse.com/security/cve/CVE-2014-4607.html
https://bugzilla.novell.com/883947
https://scc.suse.com:443/patches/
https://scc.suse.com:443/patches/
https://scc.suse.com:443/patches/
https://scc.suse.com:443/patches/