Scientific Linux alert SLSA-2020:0199-1 (openslp)
| From: | Farhan Ahmed <fahmed@fnal.gov> | |
| To: | scientific-linux-errata@listserv.fnal.gov | |
| Subject: | Security ERRATA Critical: openslp on SL6.x i386/x86_64 | |
| Date: | Wed, 22 Jan 2020 19:27:10 -0000 | |
| Message-ID: | <20200122192710.6958.22120@slpackages.fnal.gov> |
Synopsis: Critical: openslp security update Advisory ID: SLSA-2020:0199-1 Issue Date: 2020-01-22 CVE Numbers: CVE-2019-5544 -- Security Fix(es): * openslp: Heap-based buffer overflow in ProcessSrvRqst() in slpd_process.c leading to remote code execution (CVE-2019-5544) -- SL6 x86_64 openslp-2.0.0-4.el6_10.i686.rpm openslp-2.0.0-4.el6_10.x86_64.rpm openslp-debuginfo-2.0.0-4.el6_10.i686.rpm openslp-debuginfo-2.0.0-4.el6_10.x86_64.rpm openslp-devel-2.0.0-4.el6_10.i686.rpm openslp-devel-2.0.0-4.el6_10.x86_64.rpm openslp-server-2.0.0-4.el6_10.x86_64.rpm i386 openslp-2.0.0-4.el6_10.i686.rpm openslp-debuginfo-2.0.0-4.el6_10.i686.rpm openslp-devel-2.0.0-4.el6_10.i686.rpm openslp-server-2.0.0-4.el6_10.i686.rpm - Scientific Linux Development Team
