Oval Definition:oval:org.opensuse.security:def:202139359
Revision Date:2022-09-02Version:1
Title:CVE-2021-39359
Description:

In GNOME libgda through 6.0.0, gda-web-provider.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2021-39359
SUSE CVE-2021-39359
Platform(s):openSUSE Tumbleweed
SUSE Linux Enterprise Desktop 12 SP5
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Linux Enterprise Workstation Extension 12 SP5
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • glade-catalog-libgda-6.0.0-5.1 is installed
  • OR libgda-6_0-6_0_0-6.0.0-5.1 is installed
  • OR libgda-6_0-6_0_0-lang-6.0.0-5.1 is installed
  • OR libgda-6_0-devel-6.0.0-5.1 is installed
  • OR libgda-6_0-doc-6.0.0-5.1 is installed
  • OR libgda-6_0-ldap-6.0.0-5.1 is installed
  • OR libgda-6_0-mysql-6.0.0-5.1 is installed
  • OR libgda-6_0-postgres-6.0.0-5.1 is installed
  • OR libgda-6_0-sqlcipher-6.0.0-5.1 is installed
  • OR libgda-6_0-sqlite-6.0.0-5.1 is installed
  • OR libgda-6_0-tools-6.0.0-5.1 is installed
  • OR libgda-report-6.0.0-5.1 is installed
  • OR libgda-report-6_0-6_0_0-6.0.0-5.1 is installed
  • OR libgda-ui-6_0-6_0_0-6.0.0-5.1 is installed
  • OR libgda-ui-6_0-plugins-6.0.0-5.1 is installed
  • OR libgda-ui-6_0-tools-6.0.0-5.1 is installed
  • OR libgda-xslt-6_0-6_0_0-6.0.0-5.1 is installed
  • OR typelib-1_0-Gda-6_0-6.0.0-5.1 is installed
  • OR typelib-1_0-Gdaui-6_0-6.0.0-5.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 8 is installed
  • OR SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libgda-5_0-4 is affected
  • OR libgda-5_0-mysql is affected
  • OR libgda-5_0-postgres is affected
  • OR libgda-5_0-sqlite is affected
  • OR libgda-ui-5_0-4 is affected
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 9 is installed
  • OR SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • libgda-5_0-4 is affected
  • OR libgda-5_0-mysql is affected
  • OR libgda-5_0-postgres is affected
  • OR libgda-5_0-sqlite is affected
  • OR libgda-ui-5_0-4 is affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • AND libgda is affected
  • OR Package Information
  • SUSE Linux Enterprise Desktop 12 SP5 is installed
  • OR SUSE Linux Enterprise Server 12 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
  • OR SUSE Linux Enterprise Workstation Extension 12 SP5 is installed
  • AND libgda-5_0-4-lang is affected
  • OR Package Information
  • SUSE Linux Enterprise Server 12 SP5 is installed
  • AND
  • libgda-5_0-4 is affected
  • OR libgda-5_0-mysql is affected
  • OR libgda-5_0-postgres is affected
  • OR libgda-5_0-sqlite is affected
  • OR libgda-ui-5_0-4 is affected
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND Package Information
  • libgda-5_0-4 is affected
  • OR libgda-5_0-mysql is affected
  • OR libgda-5_0-postgres is affected
  • OR libgda-5_0-sqlite is affected
  • OR libgda-ui-5_0-4 is affected
  • BACK