Rapid7 VulnDB

SUSE Linux Security Advisory: SUSE-SR:2008:005

Back to Search

SUSE Linux Security Advisory: SUSE-SR:2008:005

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
01/28/2008
Created
07/25/2018
Added
12/12/2013
Modified
07/04/2017

Description

Heap-based buffer overflow in the doInterval function in regexcmp.cpp in libicu in International Components for Unicode (ICU) 3.8.1 and earlier allows context-dependent attackers to cause a denial of service (memory consumption) and possibly have unspecified other impact via a regular expression that writes a large amount of data to the backtracking stack. NOTE: some of these details are obtained from third party information.

Solution(s)

  • suse-upgrade-acroread
  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-apache2-mod_jk
  • suse-upgrade-asterisk
  • suse-upgrade-asterisk-alsa
  • suse-upgrade-asterisk-odbc
  • suse-upgrade-asterisk-pgsql
  • suse-upgrade-asterisk-spandsp
  • suse-upgrade-asterisk-zaptel
  • suse-upgrade-cacti
  • suse-upgrade-ethereal
  • suse-upgrade-icu
  • suse-upgrade-icu-data
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-libcdio
  • suse-upgrade-libcdio-0
  • suse-upgrade-libcdio-32bit
  • suse-upgrade-libcdio-64bit
  • suse-upgrade-libcdio-devel
  • suse-upgrade-libcdio-utils
  • suse-upgrade-libcdio7
  • suse-upgrade-libcdio7-32bit
  • suse-upgrade-libcdio7-64bit
  • suse-upgrade-libcdio_cdda0
  • suse-upgrade-libcdio_paranoia0
  • suse-upgrade-libicu
  • suse-upgrade-libicu-32bit
  • suse-upgrade-libicu-64bit
  • suse-upgrade-libicu-devel
  • suse-upgrade-libicu-devel-32bit
  • suse-upgrade-libicu-devel-64bit
  • suse-upgrade-libicu-doc
  • suse-upgrade-libiso9660-5
  • suse-upgrade-libiso9660-5-32bit
  • suse-upgrade-libiso9660-5-64bit
  • suse-upgrade-libudf0
  • suse-upgrade-openoffice_org
  • suse-upgrade-openoffice_org-af
  • suse-upgrade-openoffice_org-ar
  • suse-upgrade-openoffice_org-be-by
  • suse-upgrade-openoffice_org-bg
  • suse-upgrade-openoffice_org-ca
  • suse-upgrade-openoffice_org-cs
  • suse-upgrade-openoffice_org-cy
  • suse-upgrade-openoffice_org-da
  • suse-upgrade-openoffice_org-de
  • suse-upgrade-openoffice_org-el
  • suse-upgrade-openoffice_org-en-gb
  • suse-upgrade-openoffice_org-es
  • suse-upgrade-openoffice_org-et
  • suse-upgrade-openoffice_org-fi
  • suse-upgrade-openoffice_org-fr
  • suse-upgrade-openoffice_org-galleries
  • suse-upgrade-openoffice_org-gnome
  • suse-upgrade-openoffice_org-gu-in
  • suse-upgrade-openoffice_org-hi-in
  • suse-upgrade-openoffice_org-hr
  • suse-upgrade-openoffice_org-hu
  • suse-upgrade-openoffice_org-it
  • suse-upgrade-openoffice_org-ja
  • suse-upgrade-openoffice_org-kde
  • suse-upgrade-openoffice_org-km
  • suse-upgrade-openoffice_org-ko
  • suse-upgrade-openoffice_org-lt
  • suse-upgrade-openoffice_org-mk
  • suse-upgrade-openoffice_org-mono
  • suse-upgrade-openoffice_org-nb
  • suse-upgrade-openoffice_org-nl
  • suse-upgrade-openoffice_org-nn
  • suse-upgrade-openoffice_org-officebean
  • suse-upgrade-openoffice_org-pa-in
  • suse-upgrade-openoffice_org-pl
  • suse-upgrade-openoffice_org-pt
  • suse-upgrade-openoffice_org-pt-br
  • suse-upgrade-openoffice_org-ru
  • suse-upgrade-openoffice_org-rw
  • suse-upgrade-openoffice_org-sdk
  • suse-upgrade-openoffice_org-sdk-doc
  • suse-upgrade-openoffice_org-sk
  • suse-upgrade-openoffice_org-sl
  • suse-upgrade-openoffice_org-sr-cs
  • suse-upgrade-openoffice_org-st
  • suse-upgrade-openoffice_org-sv
  • suse-upgrade-openoffice_org-tr
  • suse-upgrade-openoffice_org-ts
  • suse-upgrade-openoffice_org-vi
  • suse-upgrade-openoffice_org-xh
  • suse-upgrade-openoffice_org-zh-cn
  • suse-upgrade-openoffice_org-zh-tw
  • suse-upgrade-openoffice_org-zu
  • suse-upgrade-perl-tk
  • suse-upgrade-sdl_image
  • suse-upgrade-sdl_image-devel
  • suse-upgrade-suse-release
  • suse-upgrade-tkimg
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-wireshark
  • suse-upgrade-wireshark-devel

References

  • suse-upgrade-acroread
  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-apache2-mod_jk
  • suse-upgrade-asterisk
  • suse-upgrade-asterisk-alsa
  • suse-upgrade-asterisk-odbc
  • suse-upgrade-asterisk-pgsql
  • suse-upgrade-asterisk-spandsp
  • suse-upgrade-asterisk-zaptel
  • suse-upgrade-cacti
  • suse-upgrade-ethereal
  • suse-upgrade-icu
  • suse-upgrade-icu-data
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-libcdio
  • suse-upgrade-libcdio-0
  • suse-upgrade-libcdio-32bit
  • suse-upgrade-libcdio-64bit
  • suse-upgrade-libcdio-devel
  • suse-upgrade-libcdio-utils
  • suse-upgrade-libcdio7
  • suse-upgrade-libcdio7-32bit
  • suse-upgrade-libcdio7-64bit
  • suse-upgrade-libcdio_cdda0
  • suse-upgrade-libcdio_paranoia0
  • suse-upgrade-libicu
  • suse-upgrade-libicu-32bit
  • suse-upgrade-libicu-64bit
  • suse-upgrade-libicu-devel
  • suse-upgrade-libicu-devel-32bit
  • suse-upgrade-libicu-devel-64bit
  • suse-upgrade-libicu-doc
  • suse-upgrade-libiso9660-5
  • suse-upgrade-libiso9660-5-32bit
  • suse-upgrade-libiso9660-5-64bit
  • suse-upgrade-libudf0
  • suse-upgrade-openoffice_org
  • suse-upgrade-openoffice_org-af
  • suse-upgrade-openoffice_org-ar
  • suse-upgrade-openoffice_org-be-by
  • suse-upgrade-openoffice_org-bg
  • suse-upgrade-openoffice_org-ca
  • suse-upgrade-openoffice_org-cs
  • suse-upgrade-openoffice_org-cy
  • suse-upgrade-openoffice_org-da
  • suse-upgrade-openoffice_org-de
  • suse-upgrade-openoffice_org-el
  • suse-upgrade-openoffice_org-en-gb
  • suse-upgrade-openoffice_org-es
  • suse-upgrade-openoffice_org-et
  • suse-upgrade-openoffice_org-fi
  • suse-upgrade-openoffice_org-fr
  • suse-upgrade-openoffice_org-galleries
  • suse-upgrade-openoffice_org-gnome
  • suse-upgrade-openoffice_org-gu-in
  • suse-upgrade-openoffice_org-hi-in
  • suse-upgrade-openoffice_org-hr
  • suse-upgrade-openoffice_org-hu
  • suse-upgrade-openoffice_org-it
  • suse-upgrade-openoffice_org-ja
  • suse-upgrade-openoffice_org-kde
  • suse-upgrade-openoffice_org-km
  • suse-upgrade-openoffice_org-ko
  • suse-upgrade-openoffice_org-lt
  • suse-upgrade-openoffice_org-mk
  • suse-upgrade-openoffice_org-mono
  • suse-upgrade-openoffice_org-nb
  • suse-upgrade-openoffice_org-nl
  • suse-upgrade-openoffice_org-nn
  • suse-upgrade-openoffice_org-officebean
  • suse-upgrade-openoffice_org-pa-in
  • suse-upgrade-openoffice_org-pl
  • suse-upgrade-openoffice_org-pt
  • suse-upgrade-openoffice_org-pt-br
  • suse-upgrade-openoffice_org-ru
  • suse-upgrade-openoffice_org-rw
  • suse-upgrade-openoffice_org-sdk
  • suse-upgrade-openoffice_org-sdk-doc
  • suse-upgrade-openoffice_org-sk
  • suse-upgrade-openoffice_org-sl
  • suse-upgrade-openoffice_org-sr-cs
  • suse-upgrade-openoffice_org-st
  • suse-upgrade-openoffice_org-sv
  • suse-upgrade-openoffice_org-tr
  • suse-upgrade-openoffice_org-ts
  • suse-upgrade-openoffice_org-vi
  • suse-upgrade-openoffice_org-xh
  • suse-upgrade-openoffice_org-zh-cn
  • suse-upgrade-openoffice_org-zh-tw
  • suse-upgrade-openoffice_org-zu
  • suse-upgrade-perl-tk
  • suse-upgrade-sdl_image
  • suse-upgrade-sdl_image-devel
  • suse-upgrade-suse-release
  • suse-upgrade-tkimg
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-wireshark
  • suse-upgrade-wireshark-devel

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;