Linuxsecurity
SUSE Libarchive Security Update Addresses Multiple Denial of Service Vulnerabilities
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A recent update for SUSE's libarchive addresses several denial of service vulnerabilities affecting multiple versions of SUSE Linux Enterprise Micro. The vulnerabilities include file descriptor leaks, NULL pointer dereferences, and improper handling of temporary files, which could lead to system crashes or resource exhaustion. Specifically, issues were identified with creating temporary files in non-writable directories and excessive resource usage with RAR5 files. The update is rated as moderate and is applicable to versions 5.3, 5.4, and 5.5 of SUSE Linux Enterprise Micro, as well as Rancher versions. Administrators are advised to apply the patches promptly to mitigate potential risks. The vulnerabilities are cataloged under various bug reports, indicating a structured response to the issues.
Key Points: • SUSE's libarchive update addresses five denial of service vulnerabilities. • Affected systems include SUSE Linux Enterprise Micro versions 5.3 to 5.5 and Rancher. • Administrators are urged to apply the patches to prevent potential system crashes.