|
Bugzilla – Full Text Bug Listing |
| Summary: | VUL-0: CVE-2023-42119: exim: dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability | ||
|---|---|---|---|
| Product: | [openSUSE] openSUSE Distribution | Reporter: | SMASH SMASH <smash_bz> |
| Component: | Security | Assignee: | Peter Wullinger <wullinger> |
| Status: | RESOLVED FIXED | QA Contact: | Security Team bot <security-team> |
| Severity: | Minor | ||
| Priority: | P3 - Medium | CC: | abergmann |
| Version: | Leap 15.6 | ||
| Target Milestone: | --- | ||
| Hardware: | Other | ||
| OS: | Other | ||
| URL: | https://smash.suse.de/issue/380208/ | ||
| Whiteboard: | |||
| Found By: | Security Response Team | Services Priority: | |
| Business Priority: | Blocker: | --- | |
| Marketing QA Status: | --- | IT Deployment: | --- |
|
Description
SMASH SMASH
2023-09-28 06:38:07 UTC
There are no upstream fixes for this yet. You are only affected, if your upstream resolver does no do DNS record validation. This is an autogenerated message for OBS integration: This bug (1215789) was mentioned in https://build.opensuse.org/request/show/1117952 Factory / exim This is an autogenerated message for OBS integration: This bug (1215789) was mentioned in https://build.opensuse.org/request/show/1118499 Backports:SLE-12-SP4 / exim https://build.opensuse.org/request/show/1118502 Backports:SLE-15-SP4 / exim https://build.opensuse.org/request/show/1118503 Backports:SLE-15-SP6 / exim https://build.opensuse.org/request/show/1118504 Backports:SLE-15-SP5 / exim openSUSE-SU-2023:0303-1: An update that fixes two vulnerabilities is now available. Category: security (critical) Bug References: 1215787,1215789 CVE References: CVE-2023-42117,CVE-2023-42119 JIRA References: Sources used: openSUSE Backports SLE-15-SP5 (src): exim-4.94.2-bp155.5.6.1 openSUSE-SU-2023:0304-1: An update that fixes two vulnerabilities is now available. Category: security (critical) Bug References: 1215787,1215789 CVE References: CVE-2023-42117,CVE-2023-42119 JIRA References: Sources used: openSUSE Backports SLE-15-SP4 (src): exim-4.94.2-bp154.2.9.1 Fixed via patch This is an autogenerated message for OBS integration: This bug (1215789) was mentioned in https://build.opensuse.org/request/show/1187597 Backports:SLE-15-SP6 / exim |