VYPR

rpm package

suse/subscription-matcher&distro=SUSE Manager Server 3.1

pkg:rpm/suse/subscription-matcher&distro=SUSE%20Manager%20Server%203.1

Vulnerabilities (5)

  • CVE-2018-17197Dec 24, 2018
    affected < 0.22-4.9.2fixed 0.22-4.9.2

    A carefully crafted or corrupt sqlite file can cause an infinite loop in Apache Tika's SQLite3Parser in versions 1.8-1.19.1 of Apache Tika.

  • CVE-2018-14626Nov 29, 2018
    affected < 0.22-4.9.2fixed 0.22-4.9.2

    PowerDNS Authoritative Server 4.1.0 up to 4.1.4 inclusive and PowerDNS Recursor 4.0.0 up to 4.1.4 inclusive are vulnerable to a packet cache pollution via crafted query that can lead to denial of service.

  • CVE-2018-10851Nov 29, 2018
    affected < 0.22-4.9.2fixed 0.22-4.9.2

    PowerDNS Authoritative Server 3.3.0 up to 4.1.4 excluding 4.1.5 and 4.0.6, and PowerDNS Recursor 3.2 up to 4.1.4 excluding 4.1.5 and 4.0.9, are vulnerable to a memory leak while parsing malformed records that can lead to remote denial of service.

  • CVE-2017-14696HigOct 24, 2017
    affected < 0.21-4.6.1fixed 0.21-4.6.1

    SaltStack Salt before 2016.3.8, 2016.11.x before 2016.11.8, and 2017.7.x before 2017.7.2 allows remote attackers to cause a denial of service via a crafted authentication request.

  • CVE-2017-14695CriOct 24, 2017
    affected < 0.21-4.6.1fixed 0.21-4.6.1

    Directory traversal vulnerability in minion id validation in SaltStack Salt before 2016.3.8, 2016.11.x before 2016.11.8, and 2017.7.x before 2017.7.2 allows remote minions with incorrect credentials to authenticate to a master via a crafted minion ID. NOTE: this vulnerability ex