SalvusAlert : openSUSE multiple security updates for ICU

Summary: openSUSE released a security update for ICU
Salvus Alerting
Information At A Glance
Source
Version/Dependency
Developer
Severity
openSUSE 11.3 and openSUSE 11.4
moderate

  • Summary
This release covers updates for two ICU vulnerabilities. 1) Specially crafted strings could cause a buffer overflow in ICU 2) Integer overflow in the getSymbol() function could crash applications using icuThe CVE to reference are: (CVE-2010-4409) and (CVE-2011-4599)
  • Fix
Install appropriate patch using openSUSE Security Update YaST online_update.Alternatively commands are available for the separate products here.To bring your system up-to-date, use ”zypper patch”
  • Source

Advertisement: Consolidate multiple domain names with Network Solutions®, the original domain name registrar!
Disclaimer: Salvus Alerting provides timely industry related information to its subscriber community and visitors for informational purposes only and makes every effort to distribute accurate and reliable information. Any information provided, is considered “as-is” and the subscriber and/or visitor assumes all responsibility for its uses. Salvus Alerting disclaims all warranties with regard to the information being provided, including all implied warranties of merchantability and fitness. In no event shall Salvus Alerting be liable for any special, indirect or consequential damages or any damages whatsoever resulting from loss of use, data or profits, whether in an action of contract, negligence or other legal action, arising out of or in connection with the use or performance of this information being provided. Salvus Systems and Salvus Alerting is a wholly owned and operated by FactNgN, LLC.