Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Производитель ПО
Наименование ПО
libplist++3
(any)
libplist++3-debuginfo
(any)
libplist++-devel
(any)
libplist3
(any)
libplist3-debuginfo
(any)
libplist-debugsource
(any)
libplist-devel
(any)
Описание
Уведомление безопасности об уязвимостях SUSE Linux Enterprise Software Development Kit 12-SP3, SUSE Linux Enterprise Software Development Kit 12-SP2, SUSE Linux Enterprise Desktop 12-SP2, SUSE Linux Enterprise Desktop 12-SP3, SUSE Linux Enterprise Server 12-SP2, SUSE Linux Enterprise Server 12-SP3, SUSE Linux Enterprise Workstation Extension 12-SP3, SUSE Linux Enterprise Workstation Extension 12-SP2, SUSE Linux Enterprise Server for Raspberry Pi 12-SP2
Как исправить
Проблема может быть решена обновлением операционной системы до следующих версий пакетов в зависимости от архитектуры:
SUSE Linux Enterprise Software Development Kit 12-SP3:
aarch64, ppc64le, s390x, x86_64:
libplist++-devel - 1.12-20.3.2
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-devel - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Software Development Kit 12-SP2:
aarch64, ppc64le, s390x, x86_64:
libplist++-devel - 1.12-20.3.2
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-devel - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Desktop 12-SP2:
x86_64:
libplist++3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist3 - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Desktop 12-SP3:
x86_64:
libplist++3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist3 - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server 12-SP2:
aarch64, ppc64le, s390x, x86_64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server 12-SP3:
aarch64, ppc64le, s390x, x86_64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Workstation Extension 12-SP3:
x86_64:
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Workstation Extension 12-SP2:
x86_64:
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2:
aarch64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Software Development Kit 12-SP3:
aarch64, ppc64le, s390x, x86_64:
libplist++-devel - 1.12-20.3.2
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-devel - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Software Development Kit 12-SP2:
aarch64, ppc64le, s390x, x86_64:
libplist++-devel - 1.12-20.3.2
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-devel - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Desktop 12-SP2:
x86_64:
libplist++3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist3 - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Desktop 12-SP3:
x86_64:
libplist++3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist3 - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server 12-SP2:
aarch64, ppc64le, s390x, x86_64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server 12-SP3:
aarch64, ppc64le, s390x, x86_64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Workstation Extension 12-SP3:
x86_64:
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Workstation Extension 12-SP2:
x86_64:
libplist++3 - 1.12-20.3.2
libplist++3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
SUSE Linux Enterprise Server for Raspberry Pi 12-SP2:
aarch64:
libplist3 - 1.12-20.3.2
libplist3-debuginfo - 1.12-20.3.2
libplist-debugsource - 1.12-20.3.2
Ссылки
http://lists.suse.com/pipermail/sle-security-updates/2017-August/003143.html
https://bugzilla.suse.com/1029638
https://bugzilla.suse.com/1029639
https://bugzilla.suse.com/1029706
https://bugzilla.suse.com/1029707
https://bugzilla.suse.com/1029751
Источник: CVE
Наименование: CVE-2017-6438
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6438
Источник: CVE
Наименование: CVE-2017-6439
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6439
Источник: CVE
Наименование: CVE-2017-6436
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6436
Источник: CVE
Наименование: CVE-2017-6437
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6437
Источник: CVE
Наименование: CVE-2017-6435
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6435
https://bugzilla.suse.com/1029638
https://bugzilla.suse.com/1029639
https://bugzilla.suse.com/1029706
https://bugzilla.suse.com/1029707
https://bugzilla.suse.com/1029751
Источник: CVE
Наименование: CVE-2017-6438
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6438
Источник: CVE
Наименование: CVE-2017-6439
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6439
Источник: CVE
Наименование: CVE-2017-6436
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6436
Источник: CVE
Наименование: CVE-2017-6437
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6437
Источник: CVE
Наименование: CVE-2017-6435
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6435