{"id":"SUSE-SU-2020:3064-1","summary":"Security update for zeromq","details":"This update for zeromq fixes the following issues:\n\n- Fixed a memory leak in client induced by malicious server(s) without CURVE/ZAP (bsc#1176257)\n- Fixed a stack overflow in PUB/XPUB subscription store (bsc#1176258)\n","modified":"2020-10-28T08:09:50Z","published":"2020-10-28T08:09:50Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2020/suse-su-20203064-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176257"},{"type":"REPORT","url":"https://bugzilla.suse.com/1176258"}],"affected":[{"package":{"name":"zeromq","ecosystem":"SUSE:Manager Client Tools 12","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Manager%20Client%20Tools%2012"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Linux Enterprise Module for Advanced Systems Management 12","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Advanced%20Systems%20Management%2012"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Linux Enterprise Point of Sale 12 SP2","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Linux%20Enterprise%20Point%20of%20Sale%2012%20SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1","zeromq-devel":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Linux Enterprise Workstation Extension 12 SP5","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Manager Proxy 3.2","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Manager%20Proxy%203.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Manager Server 3.2","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Manager%20Server%203.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}},{"package":{"name":"zeromq","ecosystem":"SUSE:Enterprise Storage 5","purl":"pkg:rpm/suse/zeromq&distro=SUSE%20Enterprise%20Storage%205"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.4-15.6.1"}]}],"ecosystem_specific":{"binaries":[{"libzmq3":"4.0.4-15.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:3064-1.json"}}],"schema_version":"1.7.3"}