Oval Definition:oval:org.opensuse.security:def:202121419
Revision Date:2022-05-22Version:1
Title:CVE-2021-21419
Description:

Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending very large websocket frames. Malicious peer may exhaust memory on Eventlet side by sending highly compressed data frame. A patch in version 0.31.0 restricts websocket frame to reasonable limits. As a workaround, restricting memory usage via OS limits would help against overall machine exhaustion, but there is no workaround to protect Eventlet process.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2021-21419
SUSE CVE-2021-21419
SUSE-SU-2021:2554-1
SUSE-SU-2021:3729-1
Platform(s):SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-aioeventlet is not affected
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 8 is installed
  • AND
  • ardana-cobbler-8.0+git.1614096566.e8c2b27-3.44.3 is installed
  • OR cassandra-3.11.10-5.3.5 is installed
  • OR cassandra-tools-3.11.10-5.3.5 is installed
  • OR documentation-suse-openstack-cloud-installation-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-operations-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-opsconsole-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-planning-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-security-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-user-8.20210512-1.32.5 is installed
  • OR grafana-6.7.4-4.18.2 is installed
  • OR kibana-4.6.6-3.9.2 is installed
  • OR openstack-heat-templates-0.0.0+git.1623056900.7917e18-3.21.3 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.18.2 is installed
  • OR openstack-nova-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-cells-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-compute-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-conductor-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-console-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-doc-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-placement-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-scheduler-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev92-3.48.5 is installed
  • OR python-Django-1.11.29-3.25.3 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-eventlet-0.20.0-6.3.3 is installed
  • OR python-nova-16.1.9~dev92-3.48.5 is installed
  • OR python-py-1.4.34-3.3.3 is installed
  • OR python-pysaml2-4.0.2-5.9.2 is installed
  • OR python-xmlschema-1.0.18-1.3.3 is installed
  • OR venv-openstack-aodh-x86_64-5.1.1~dev7-12.32.3 is installed
  • OR venv-openstack-barbican-x86_64-5.0.2~dev3-12.33.3 is installed
  • OR venv-openstack-ceilometer-x86_64-9.0.8~dev7-12.30.3 is installed
  • OR venv-openstack-cinder-x86_64-11.2.3~dev29-14.34.2 is installed
  • OR venv-openstack-designate-x86_64-5.0.3~dev7-12.31.3 is installed
  • OR venv-openstack-freezer-x86_64-5.0.0.0~xrc2~dev2-10.28.3 is installed
  • OR venv-openstack-glance-x86_64-15.0.3~dev3-12.31.3 is installed
  • OR venv-openstack-heat-x86_64-9.0.8~dev22-12.33.2 is installed
  • OR venv-openstack-horizon-x86_64-12.0.5~dev6-14.36.6 is installed
  • OR venv-openstack-ironic-x86_64-9.1.8~dev8-12.33.3 is installed
  • OR venv-openstack-keystone-x86_64-12.0.4~dev11-11.35.3 is installed
  • OR venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.32.2 is installed
  • OR venv-openstack-manila-x86_64-5.1.1~dev5-12.37.3 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.28.3 is installed
  • OR venv-openstack-monasca-x86_64-2.2.2~dev1-11.28.3 is installed
  • OR venv-openstack-murano-x86_64-4.0.2~dev2-12.28.3 is installed
  • OR venv-openstack-neutron-x86_64-11.0.9~dev69-13.38.3 is installed
  • OR venv-openstack-nova-x86_64-16.1.9~dev92-11.36.3 is installed
  • OR venv-openstack-octavia-x86_64-1.0.6~dev3-12.33.3 is installed
  • OR venv-openstack-sahara-x86_64-7.0.5~dev4-11.32.3 is installed
  • OR venv-openstack-swift-x86_64-2.15.2_2.15.2_2.15.2~dev32-11.23.3 is installed
  • OR venv-openstack-trove-x86_64-8.0.2~dev2-11.32.3 is installed
  • OR Package Information
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND
  • cassandra-3.11.10-5.3.5 is installed
  • OR cassandra-tools-3.11.10-5.3.5 is installed
  • OR crowbar-core-5.0+git.1622489449.a8e60e238-3.50.4 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1622489449.a8e60e238-3.50.4 is installed
  • OR crowbar-openstack-5.0+git.1616001417.67fd9c2a1-4.52.5 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20210512-1.32.5 is installed
  • OR grafana-6.7.4-4.18.2 is installed
  • OR kibana-4.6.6-3.9.2 is installed
  • OR openstack-heat-templates-0.0.0+git.1623056900.7917e18-3.21.3 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.18.2 is installed
  • OR openstack-nova-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-cells-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-compute-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-conductor-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-console-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-doc-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-placement-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-scheduler-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev92-3.48.5 is installed
  • OR python-Django-1.11.29-3.25.3 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-eventlet-0.20.0-6.3.3 is installed
  • OR python-nova-16.1.9~dev92-3.48.5 is installed
  • OR python-py-1.4.34-3.3.3 is installed
  • OR python-pysaml2-4.0.2-5.9.2 is installed
  • OR python-xmlschema-1.0.18-1.3.3 is installed
  • OR ruby2.1-rubygem-activerecord-session_store-0.1.2-3.3.2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 9 is installed
  • AND
  • ardana-ansible-9.0+git.1628097238.f6cbb0e-3.29.1 is installed
  • OR ardana-monasca-9.0+git.1627995376.30bdf85-3.25.1 is installed
  • OR influxdb-1.3.8-4.6.1 is installed
  • OR kibana-4.6.6-4.12.1 is installed
  • OR openstack-cinder-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-api-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-backup-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-scheduler-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-volume-13.0.10~dev23-3.31.2 is installed
  • OR openstack-ec2-api-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-api-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-metadata-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-s3-7.1.1~dev6-3.3.2 is installed
  • OR openstack-heat-gbp-12.0.1~dev4-3.6.1 is installed
  • OR openstack-heat-templates-0.0.0+git.1628179051.7d761bff-3.12.1 is installed
  • OR openstack-horizon-plugin-gbp-ui-12.0.1~dev5-3.6.1 is installed
  • OR openstack-keystone-14.2.1~dev7-3.25.2 is installed
  • OR openstack-neutron-gbp-14.0.1~dev19-3.28.1 is installed
  • OR openstack-nova-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-api-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-cells-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-compute-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-conductor-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-console-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-placement-api-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-scheduler-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev91-3.40.1 is installed
  • OR python-cinder-13.0.10~dev23-3.31.2 is installed
  • OR python-ec2api-7.1.1~dev6-3.3.2 is installed
  • OR python-eventlet-0.20.0-8.3.1 is installed
  • OR python-heat-gbp-12.0.1~dev4-3.6.1 is installed
  • OR python-horizon-plugin-gbp-ui-12.0.1~dev5-3.6.1 is installed
  • OR python-keystone-14.2.1~dev7-3.25.2 is installed
  • OR python-neutron-gbp-14.0.1~dev19-3.28.1 is installed
  • OR python-nova-18.3.1~dev91-3.40.1 is installed
  • OR venv-openstack-barbican-x86_64-7.0.1~dev24-3.25.1 is installed
  • OR venv-openstack-cinder-x86_64-13.0.10~dev23-3.28.1 is installed
  • OR venv-openstack-designate-x86_64-7.0.2~dev2-3.25.1 is installed
  • OR venv-openstack-glance-x86_64-17.0.1~dev30-3.23.1 is installed
  • OR venv-openstack-heat-x86_64-11.0.4~dev4-3.25.1 is installed
  • OR venv-openstack-horizon-x86_64-14.1.1~dev11-4.29.1 is installed
  • OR venv-openstack-ironic-x86_64-11.1.5~dev17-4.23.1 is installed
  • OR venv-openstack-keystone-x86_64-14.2.1~dev7-3.26.1 is installed
  • OR venv-openstack-magnum-x86_64-7.2.1~dev1-4.25.1 is installed
  • OR venv-openstack-manila-x86_64-7.4.2~dev60-3.31.1 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.8.2~dev3-3.25.1 is installed
  • OR venv-openstack-monasca-x86_64-2.7.1~dev10-3.23.1 is installed
  • OR venv-openstack-neutron-x86_64-13.0.8~dev164-6.29.1 is installed
  • OR venv-openstack-nova-x86_64-18.3.1~dev91-3.29.1 is installed
  • OR venv-openstack-octavia-x86_64-3.2.3~dev7-4.25.1 is installed
  • OR venv-openstack-sahara-x86_64-9.0.2~dev15-3.25.1 is installed
  • OR venv-openstack-swift-x86_64-2.19.2~dev48-2.20.1 is installed
  • OR Package Information
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND
  • crowbar-openstack-6.0+git.1630614261.26948f746-3.37.2 is installed
  • OR influxdb-1.3.8-4.6.1 is installed
  • OR kibana-4.6.6-4.12.1 is installed
  • OR openstack-cinder-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-api-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-backup-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-scheduler-13.0.10~dev23-3.31.2 is installed
  • OR openstack-cinder-volume-13.0.10~dev23-3.31.2 is installed
  • OR openstack-ec2-api-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-api-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-metadata-7.1.1~dev6-3.3.2 is installed
  • OR openstack-ec2-api-s3-7.1.1~dev6-3.3.2 is installed
  • OR openstack-heat-gbp-12.0.1~dev4-3.6.1 is installed
  • OR openstack-heat-templates-0.0.0+git.1628179051.7d761bff-3.12.1 is installed
  • OR openstack-horizon-plugin-gbp-ui-12.0.1~dev5-3.6.1 is installed
  • OR openstack-keystone-14.2.1~dev7-3.25.2 is installed
  • OR openstack-neutron-gbp-14.0.1~dev19-3.28.1 is installed
  • OR openstack-nova-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-api-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-cells-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-compute-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-conductor-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-console-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-placement-api-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-scheduler-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev91-3.40.1 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev91-3.40.1 is installed
  • OR python-cinder-13.0.10~dev23-3.31.2 is installed
  • OR python-ec2api-7.1.1~dev6-3.3.2 is installed
  • OR python-eventlet-0.20.0-8.3.1 is installed
  • OR python-heat-gbp-12.0.1~dev4-3.6.1 is installed
  • OR python-horizon-plugin-gbp-ui-12.0.1~dev5-3.6.1 is installed
  • OR python-keystone-14.2.1~dev7-3.25.2 is installed
  • OR python-neutron-gbp-14.0.1~dev19-3.28.1 is installed
  • OR python-nova-18.3.1~dev91-3.40.1 is installed
  • OR ruby2.1-rubygem-puma-2.16.0-4.15.1 is installed
  • OR ruby2.1-rubygem-redcarpet-3.2.3-4.3.1 is installed
  • BACK