Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.4.2015.0674.1
Category:SuSE Local Security Checks
Title:SUSE: Security Advisory (SUSE-SU-2015:0674-1)
Summary:The remote host is missing an update for the 'xorg-x11-libs' package(s) announced via the SUSE-SU-2015:0674-1 advisory.
Description:Summary:
The remote host is missing an update for the 'xorg-x11-libs' package(s) announced via the SUSE-SU-2015:0674-1 advisory.

Vulnerability Insight:
xorg-x11-libs was patched to fix the following security issues:

* Integer overflow of allocations in font metadata file parsing.
(CVE-2014-0209)
* libxfont not validating length fields when parsing xfs protocol
replies. (CVE-2014-0210)
* Integer overflows causing miscalculating memory needs for xfs
replies. (CVE-2014-0211)

Further information is available at
[link moved to references]
<[link moved to references]> .

Security Issues references:

* CVE-2014-0209
<[link moved to references]>
* CVE-2014-0210
<[link moved to references]>
* CVE-2014-0211
<[link moved to references]>

Affected Software/OS:
'xorg-x11-libs' package(s) on SUSE Linux Enterprise Desktop 11-SP3, SUSE Linux Enterprise Server 11-SP3, SUSE Linux Enterprise Server for SAP Applications 11-SP3.

Solution:
Please install the updated package(s).

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2013-1984
Debian Security Information: DSA-2683 (Google Search)
http://www.debian.org/security/2013/dsa-2683
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106913.html
http://www.openwall.com/lists/oss-security/2013/05/23/3
SuSE Security Announcement: openSUSE-SU-2013:1033 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00161.html
http://www.ubuntu.com/usn/USN-1859-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1985
Debian Security Information: DSA-2691 (Google Search)
http://www.debian.org/security/2013/dsa-2691
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106845.html
SuSE Security Announcement: openSUSE-SU-2013:1026 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00154.html
http://www.ubuntu.com/usn/USN-1860-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1986
Debian Security Information: DSA-2684 (Google Search)
http://www.debian.org/security/2013/dsa-2684
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106857.html
SuSE Security Announcement: openSUSE-SU-2013:1028 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00156.html
http://www.ubuntu.com/usn/USN-1862-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1988
Debian Security Information: DSA-2688 (Google Search)
http://www.debian.org/security/2013/dsa-2688
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106880.html
SuSE Security Announcement: openSUSE-SU-2013:1027 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00155.html
http://www.ubuntu.com/usn/USN-1864-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1990
Debian Security Information: DSA-2675 (Google Search)
http://www.debian.org/security/2013/dsa-2675
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106766.html
SuSE Security Announcement: openSUSE-SU-2013:1025 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00153.html
http://www.ubuntu.com/usn/USN-1868-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1991
Debian Security Information: DSA-2690 (Google Search)
http://www.debian.org/security/2013/dsa-2690
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106870.html
http://www.ubuntu.com/usn/USN-1869-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1992
Debian Security Information: DSA-2673 (Google Search)
http://www.debian.org/security/2013/dsa-2673
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/107024.html
SuSE Security Announcement: openSUSE-SU-2013:1029 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00157.html
http://www.ubuntu.com/usn/USN-1852-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1995
BugTraq ID: 60124
http://www.securityfocus.com/bid/60124
Common Vulnerability Exposure (CVE) ID: CVE-2013-1996
BugTraq ID: 60130
http://www.securityfocus.com/bid/60130
Debian Security Information: DSA-2687 (Google Search)
http://www.debian.org/security/2013/dsa-2687
http://www.ubuntu.com/usn/USN-1853-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-1998
BugTraq ID: 60127
http://www.securityfocus.com/bid/60127
Common Vulnerability Exposure (CVE) ID: CVE-2013-1999
Common Vulnerability Exposure (CVE) ID: CVE-2013-2000
Common Vulnerability Exposure (CVE) ID: CVE-2013-2001
Debian Security Information: DSA-2692 (Google Search)
http://www.debian.org/security/2013/dsa-2692
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106872.html
SuSE Security Announcement: openSUSE-SU-2013:1041 (Google Search)
http://lists.opensuse.org/opensuse-updates/2013-06/msg00165.html
http://www.ubuntu.com/usn/USN-1870-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-2003
BugTraq ID: 60121
http://www.securityfocus.com/bid/60121
Debian Security Information: DSA-2681 (Google Search)
http://www.debian.org/security/2013/dsa-2681
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106791.html
http://www.ubuntu.com/usn/USN-1856-1
Common Vulnerability Exposure (CVE) ID: CVE-2013-2063
DSA-2689
http://www.debian.org/security/2013/dsa-2689
FEDORA-2013-9073
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/106886.html
USN-1866-1
http://www.ubuntu.com/usn/USN-1866-1
[oss-security] 20130523 Fwd: [ANNOUNCE] X.Org Security Advisory: Protocol handling issues in X Window System client libraries
http://www.x.org/wiki/Development/Security/Advisory-2013-05-23
openSUSE-SU-2013:1032
http://lists.opensuse.org/opensuse-updates/2013-06/msg00160.html
Common Vulnerability Exposure (CVE) ID: CVE-2013-6462
BugTraq ID: 64694
http://www.securityfocus.com/bid/64694
Debian Security Information: DSA-2838 (Google Search)
http://www.debian.org/security/2014/dsa-2838
http://seclists.org/oss-sec/2014/q1/33
http://lists.x.org/archives/xorg-announce/2014-January/002389.html
http://osvdb.org/101842
RedHat Security Advisories: RHSA-2014:0018
http://rhn.redhat.com/errata/RHSA-2014-0018.html
http://secunia.com/advisories/56240
http://secunia.com/advisories/56336
http://secunia.com/advisories/56357
http://secunia.com/advisories/56371
SuSE Security Announcement: openSUSE-SU-2014:0073 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-01/msg00050.html
SuSE Security Announcement: openSUSE-SU-2014:0075 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-01/msg00052.html
http://www.ubuntu.com/usn/USN-2078-1
XForce ISS Database: libxfont-cve20136462-bo(90123)
https://exchange.xforce.ibmcloud.com/vulnerabilities/90123
Common Vulnerability Exposure (CVE) ID: CVE-2014-0209
BugTraq ID: 67382
http://www.securityfocus.com/bid/67382
Bugtraq: 20141205 NEW: VMSA-2014-0012 - VMware vSphere product updates address security vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/534161/100/0/threaded
Debian Security Information: DSA-2927 (Google Search)
http://www.debian.org/security/2014/dsa-2927
http://seclists.org/fulldisclosure/2014/Dec/23
http://www.mandriva.com/security/advisories?name=MDVSA-2015:145
http://lists.x.org/archives/xorg-announce/2014-May/002431.html
RedHat Security Advisories: RHSA-2014:1893
http://rhn.redhat.com/errata/RHSA-2014-1893.html
http://secunia.com/advisories/59154
SuSE Security Announcement: openSUSE-SU-2014:0711 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-05/msg00073.html
http://www.ubuntu.com/usn/USN-2211-1
Common Vulnerability Exposure (CVE) ID: CVE-2014-0210
Common Vulnerability Exposure (CVE) ID: CVE-2014-0211
Common Vulnerability Exposure (CVE) ID: CVE-2015-1802
BugTraq ID: 73277
http://www.securityfocus.com/bid/73277
Debian Security Information: DSA-3194 (Google Search)
http://www.debian.org/security/2015/dsa-3194
http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152497.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152838.html
https://security.gentoo.org/glsa/201507-21
http://www.x.org/wiki/Development/Security/Advisory-2015-03-17/
RedHat Security Advisories: RHSA-2015:1708
http://rhn.redhat.com/errata/RHSA-2015-1708.html
http://www.securitytracker.com/id/1031935
SuSE Security Announcement: SUSE-SU-2015:0674 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00002.html
SuSE Security Announcement: SUSE-SU-2015:0702 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00005.html
SuSE Security Announcement: openSUSE-SU-2015:0614 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-03/msg00032.html
http://www.ubuntu.com/usn/USN-2536-1
Common Vulnerability Exposure (CVE) ID: CVE-2015-1803
BugTraq ID: 73280
http://www.securityfocus.com/bid/73280
Common Vulnerability Exposure (CVE) ID: CVE-2015-1804
BugTraq ID: 73279
http://www.securityfocus.com/bid/73279
SuSE Security Announcement: openSUSE-SU-2015:2300 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-12/msg00074.html
CopyrightCopyright (C) 2021 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.