openSUSE-SU-2017:3257-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2017:3257-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2017:3257-1
Related
Published
2017-12-08T19:42:15Z
Modified
2017-12-08T19:42:15Z
Summary
Security update for erlang
Details

This update for erlang fixes security issues and bugs.

The following vulnerabilities were addressed:

  • CVE-2017-1000385: Harden against the Bleichenbacher attacher against RSA
  • CVE-2016-10253: Heap overflow through regular expressions (bsc#1030062)

In addition Erlang was updated to version 18.3.4.6, containing a number of upstream bug fixes and improvements.

References

Affected packages

SUSE:Package Hub 12 / erlang

Package

Name
erlang
Purl
pkg:rpm/suse/erlang&distro=SUSE%20Package%20Hub%2012

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
18.3.4.7-9.1

Ecosystem specific

{
    "binaries": [
        {
            "erlang-observer": "18.3.4.7-9.1",
            "erlang-et": "18.3.4.7-9.1",
            "erlang-diameter": "18.3.4.7-9.1",
            "erlang-jinterface": "18.3.4.7-9.1",
            "erlang-reltool-src": "18.3.4.7-9.1",
            "erlang-src": "18.3.4.7-9.1",
            "erlang-et-src": "18.3.4.7-9.1",
            "erlang-wx-src": "18.3.4.7-9.1",
            "erlang-epmd": "18.3.4.7-9.1",
            "erlang-observer-src": "18.3.4.7-9.1",
            "erlang-debugger-src": "18.3.4.7-9.1",
            "erlang-doc": "18.3.4.7-9.1",
            "erlang-debugger": "18.3.4.7-9.1",
            "erlang-gs-src": "18.3.4.7-9.1",
            "erlang-dialyzer-src": "18.3.4.7-9.1",
            "erlang-diameter-src": "18.3.4.7-9.1",
            "erlang-reltool": "18.3.4.7-9.1",
            "erlang": "18.3.4.7-9.1",
            "erlang-jinterface-src": "18.3.4.7-9.1",
            "erlang-dialyzer": "18.3.4.7-9.1",
            "erlang-wx": "18.3.4.7-9.1",
            "erlang-gs": "18.3.4.7-9.1"
        }
    ]
}