SUSE-SU-2016:0344-1
Dashboard / Vulnerabilities / SUSE-SU-2016:0344-1
SUSE-SU-2016:0344-1
Summary: Security update for socat
Details: This update for socat fixed the following issues: - bsc#964844: Fixed security advisory 8, Stack overflow in parser, http://www.openwall.com/lists/oss-security/2016/02/01/5. - bsc#938913: Improved resilience against Logjam attacks (CVE-2015-4000) by increasing the size of the default DH group from 512 to 2048 bit. This change avoids the non-prime 1024 bit DH p parameter in OpenSSL http://www.dest-unreach.org/socat/contrib/socat-secadv7.html.
References: https://www.suse.com/support/update/announcement/2016/suse-su-20160344-1/, https://bugzilla.suse.com/938913, https://bugzilla.suse.com/964844, https://www.suse.com/security/cve/CVE-2015-4000
Affected packages
Package
Name: socat
Purl: pkg:rpm/suse/socat&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
