This update for libssh2_org fixes the following issues:
Fix the previous fix for CVE-2019-3860 (bsc#1136570, bsc#1128481)
(Out-of-bounds reads with specially crafted SFTP packets)
Affected Packages
libssh2-1
SUSE Enterprise Storage 4SUSE Linux Enterprise Desktop 12 SP3SUSE Linux Enterprise Desktop 12 SP4SUSE Linux Enterprise Server 12 SP1-LTSSSUSE Linux Enterprise Server 12 SP2-BCL
Fixed in:
1.4.3-20.9.1
libssh2_org
SUSE Enterprise Storage 4SUSE Linux Enterprise Desktop 12 SP3SUSE Linux Enterprise Desktop 12 SP4SUSE Linux Enterprise Server 12 SP1-LTSSSUSE Linux Enterprise Server 12 SP2-BCL
Fixed in:
1.4.3-20.9.1
libssh2-1-32bit
SUSE Linux Enterprise Desktop 12 SP4SUSE Linux Enterprise Server 12 SP1-LTSSSUSE Linux Enterprise Server 12 SP2-BCLSUSE Linux Enterprise Server 12 SP2-LTSSSUSE Linux Enterprise Server 12 SP3
Fixed in:
1.4.3-20.9.1
libssh2-devel
SUSE Linux Enterprise Software Development Kit 12 SP3SUSE Linux Enterprise Software Development Kit 12 SP4