SUSE-SU-2016:0343-1 -- SLES socatID: oval:org.secpod.oval:def:89045142 | Date: (C)2021-08-03 (M)2022-09-09 |
Class: PATCH | Family: unix |
This update for socat fixes the following issues: - CVE-2013-3571: Fix a file descriptor leak that could have been misused for a denial of service attack against socat running in server mode - CVE-2014-0019: PROXY-CONNECT address was vulnerable to a stack buffer overflow - Fix a stack overflow in the parser that could have been leveraged to execute arbitrary code
Platform: |
SUSE Linux Enterprise Server 11 SP4 |