SUSE-SU-2015:2171-1
Dashboard / Vulnerabilities / SUSE-SU-2015:2171-1
SUSE-SU-2015:2171-1
Summary: Security update for gpg2
Details: The gpg2 package was updated to fix the following security and non security issues: - CVE-2015-1606: Fixed invalid memory read using a garbled keyring (bsc#918089). - CVE-2015-1607: Fixed memcpy with overlapping ranges (bsc#918090). - bsc#955753: Fixed a regression of 'gpg --recv' due to keyserver import filter (also boo#952347).
References: https://www.suse.com/support/update/announcement/2015/suse-su-20152171-1/, https://bugzilla.suse.com/918089, https://bugzilla.suse.com/918090, https://bugzilla.suse.com/952347, https://bugzilla.suse.com/955753, https://www.suse.com/security/cve/CVE-2015-1606, https://www.suse.com/security/cve/CVE-2015-1607
Affected packages
Package
Name: gpg2
Purl: pkg:rpm/suse/gpg2&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
