gpp_maybe Security update for openvpn
SUSE-SLE-SERVER-12-2017-1762


This update for openvpn fixes the following issues: - CVE-2017-12166: Lack of bound check in read_key in old legacy key handling before using values could be used for a remote buffer overflow (bsc#1060877).

  • Release Date
    Oct 24 2017
  • References
    Bugzilla: 1060877
    CVEs: CVE-2017-12166
  • Type
    security
  • Severity
    important

cloud_download Downloads

SUSE Linux Enterprise Server LTSS 12 s390x
  • Packages
    openvpn
    Full-featured SSL VPN solution using a TUN/TAP Interface
    2.3.8-16.20.1 lock rpm lock src
    openvpn-auth-pam-plugin
    OpenVPN auth-pam plugin
    2.3.8-16.20.1 lock rpm
SUSE Linux Enterprise Server LTSS 12 x86_64
  • Packages
    openvpn
    Full-featured SSL VPN solution using a TUN/TAP Interface
    2.3.8-16.20.1 lock rpm lock src
    openvpn-auth-pam-plugin
    OpenVPN auth-pam plugin
    2.3.8-16.20.1 lock rpm