Bugzilla – Bug 977980
VUL-0: libksba: CVE-2016-4353: denial of service due to stack overflow in src/ber-decoder.c
Last modified: 2016-05-04 14:23:54 UTC
CVE-2016-4353 References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-4353 http://seclists.org/oss-sec/2016/q2/172 http://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-4353.html
This particular issue seems to already have been fixed by 0003-Do-not-abort-on-decoder-stack-overflow.patch present in all SUSE_SLE-10-SP3, SUSE_SLE-11, SUSE_SLE-12, openSUSE:13.2, openSUSE:Leap:42.1.