VYPR

rpm package

suse/spacewalk-web&distro=SUSE Manager Proxy 3.1

pkg:rpm/suse/spacewalk-web&distro=SUSE%20Manager%20Proxy%203.1

Vulnerabilities (4)

  • CVE-2018-17197Dec 24, 2018
    affected < 2.7.1.21-2.35.1fixed 2.7.1.21-2.35.1

    A carefully crafted or corrupt sqlite file can cause an infinite loop in Apache Tika's SQLite3Parser in versions 1.8-1.19.1 of Apache Tika.

  • CVE-2018-14626Nov 29, 2018
    affected < 2.7.1.21-2.35.1fixed 2.7.1.21-2.35.1

    PowerDNS Authoritative Server 4.1.0 up to 4.1.4 inclusive and PowerDNS Recursor 4.0.0 up to 4.1.4 inclusive are vulnerable to a packet cache pollution via crafted query that can lead to denial of service.

  • CVE-2018-10851Nov 29, 2018
    affected < 2.7.1.21-2.35.1fixed 2.7.1.21-2.35.1

    PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.

  • CVE-2017-10807CriJul 4, 2017
    affected < 2.7.1.10-2.3.1fixed 2.7.1.10-2.3.1

    JabberD 2.x (aka jabberd2) before 2.6.1 allows anyone to authenticate using SASL ANONYMOUS, even when the sasl.anonymous c2s.xml option is not enabled.