Oval Definition:oval:org.opensuse.security:def:20177470
Revision Date:2022-05-20Version:1
Title:CVE-2017-7470
Description:

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7470
SUSE-SU-2017:1346-1
SUSE-SU-2017:1347-1
SUSE-SU-2017:1349-1
SUSE-SU-2017:1352-1
Mitre CVE-2017-7470
SUSE CVE-2017-7470
SUSE-SU-2017:1346-1
SUSE-SU-2017:1347-1
SUSE-SU-2017:1349-1
SUSE-SU-2017:1352-1
Platform(s):SUSE Linux Enterprise Server 11 SP3-CLIENT-TOOLS
SUSE Linux Enterprise Server 11 SP4-CLIENT-TOOLS
SUSE Linux Enterprise Server for SAP Applications 11 SP3-CLIENT-TOOLS
SUSE Linux Enterprise Server for SAP Applications 11 SP4-CLIENT-TOOLS
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3-CLIENT-TOOLS is installed
  • OR SUSE Linux Enterprise Server 11 SP4-CLIENT-TOOLS is installed
  • AND Package Information
  • rhnlib-2.5.84.4-8.1 is installed
  • OR spacecmd-2.5.5.5-14.1 is installed
  • OR spacewalk-backend-libs-2.5.24.9-24.1 is installed
  • OR spacewalk-check-2.5.13.8-23.1 is installed
  • OR spacewalk-client-setup-2.5.13.8-23.1 is installed
  • OR spacewalk-client-tools-2.5.13.8-23.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3-CLIENT-TOOLS is installed
  • AND Package Information
  • rhnlib-2.5.84.4-8 is installed
  • OR spacecmd-2.5.5.5-14 is installed
  • OR spacewalk-backend-2.5.24.9-24 is installed
  • OR spacewalk-backend-libs-2.5.24.9-24 is installed
  • OR spacewalk-check-2.5.13.8-23 is installed
  • OR spacewalk-client-setup-2.5.13.8-23 is installed
  • OR spacewalk-client-tools-2.5.13.8-23 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3-CLIENT-TOOLS is installed
  • OR SUSE Linux Enterprise Server 11 SP4-CLIENT-TOOLS is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP3-CLIENT-TOOLS is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 SP4-CLIENT-TOOLS is installed
  • AND Package Information
  • rhnlib-2.5.84.4-8 is installed
  • OR spacecmd-2.5.5.5-14 is installed
  • OR spacewalk-backend-2.5.24.9-24 is installed
  • OR spacewalk-backend-libs-2.5.24.9-24 is installed
  • OR spacewalk-check-2.5.13.8-23 is installed
  • OR spacewalk-client-setup-2.5.13.8-23 is installed
  • OR spacewalk-client-tools-2.5.13.8-23 is installed
  • BACK