Oval Definition:oval:org.opensuse.security:def:49081
Revision Date:2021-10-27Version:1
Title:Security update for Salt (Moderate)
Description:



This update fixes the following issues:

salt:

- Fix the regression of docker_container state module - Support querying for JSON data in external sql pillar - Exclude the full path of a download URL to prevent injection of malicious code (bsc#1190265) (CVE-2021-21996) - Fix wrong relative paths resolution with Jinja renderer when importing subdirectories

Family:unixClass:patch
Status:Reference(s):1036304
1041178
1043166
1045735
1058515
1066215
1070770
1070851
1071995
1082318
1084525
1088037
1088705
1091624
1092100
1092413
1093103
1096217
1096617
1096803
1099847
1100028
1100095
1100427
1101349
1102019
1102429
1117257
1120653
1120654
1121753
1121826
1124341
1124342
1136021
1137443
1141322
1141897
1142649
1143578
1143581
1143582
1143584
1148517
1149145
1153332
1155079
1158527
1159819
1160850
1160888
1174091
1190265
408814
428822
907538
CVE-2010-2947
CVE-2015-3294
CVE-2015-8899
CVE-2017-14491
CVE-2017-14492
CVE-2017-14493
CVE-2017-14494
CVE-2017-14495
CVE-2017-14496
CVE-2017-15107
CVE-2017-9269
CVE-2018-1000877
CVE-2018-1000878
CVE-2018-1122
CVE-2018-1123
CVE-2018-1124
CVE-2018-1125
CVE-2018-1126
CVE-2018-16301
CVE-2018-18508
CVE-2018-19486
CVE-2018-20860
CVE-2018-20861
CVE-2018-7685
CVE-2019-1000019
CVE-2019-1000020
CVE-2019-11745
CVE-2019-12735
CVE-2019-14250
CVE-2019-14382
CVE-2019-14383
CVE-2019-14834
CVE-2019-14902
CVE-2019-14907
CVE-2019-15165
CVE-2019-15847
CVE-2019-17006
CVE-2019-18408
CVE-2019-20907
CVE-2019-6133
CVE-2021-21996
SUSE-SU-2018:2690-1
SUSE-SU-2018:4190-1
SUSE-SU-2019:1457-1
SUSE-SU-2019:1607-1
SUSE-SU-2019:2018-1
SUSE-SU-2019:2435-1
SUSE-SU-2019:2673-1
SUSE-SU-2019:2702-1
SUSE-SU-2019:2730-1
SUSE-SU-2019:3093-1
SUSE-SU-2019:3395-1
SUSE-SU-2020:0224-1
SUSE-SU-2020:2277-1
SUSE-SU-2021:3550-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2
SUSE Linux Enterprise Module for Advanced Systems Management 12
SUSE Linux Enterprise Module for Basesystem 15
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Desktop Applications 15
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP5
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • libsnmp30-5.7.3-lp150.5 is installed
  • OR net-snmp-5.7.3-lp150.5 is installed
  • OR perl-SNMP-5.7.3-lp150.5 is installed
  • OR snmp-mibs-5.7.3-lp150.5 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-common-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-other-60.7.0-lp151.2.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • xorg-x11-Xvnc-7.4-27.70.76 is installed
  • OR xorg-x11-server-7.4-27.70.76 is installed
  • OR xorg-x11-server-extra-7.4-27.70.76 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • bind-9.9.6P1-0.19 is installed
  • OR bind-libs-9.9.6P1-0.19 is installed
  • OR bind-libs-32bit-9.9.6P1-0.19 is installed
  • OR bind-utils-9.9.6P1-0.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • dhcp-4.2.4.P2-0.24 is installed
  • OR dhcp-client-4.2.4.P2-0.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • hplip-3.14.6-3 is installed
  • OR hplip-hpijs-3.14.6-3 is installed
  • OR hplip-sane-3.14.6-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • sysconfig-0.83.8-7 is installed
  • OR sysconfig-netconfig-0.83.8-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libvorbis0-1.3.3-8 is installed
  • OR libvorbis0-32bit-1.3.3-8 is installed
  • OR libvorbisenc2-1.3.3-8 is installed
  • OR libvorbisenc2-32bit-1.3.3-8 is installed
  • OR libvorbisfile3-1.3.3-8 is installed
  • OR libvorbisfile3-32bit-1.3.3-8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND libssh4-0.6.3-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • java-1_7_0-openjdk-plugin-1.6.2-2.8 is installed
  • OR java-1_8_0-openjdk-plugin-1.6.2-2.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Advanced Systems Management 12 is installed
  • AND Package Information
  • python2-salt-3000-46.151.2 is installed
  • OR salt-3000-46.151.2 is installed
  • OR salt-api-3000-46.151.2 is installed
  • OR salt-bash-completion-3000-46.151.2 is installed
  • OR salt-cloud-3000-46.151.2 is installed
  • OR salt-doc-3000-46.151.2 is installed
  • OR salt-master-3000-46.151.2 is installed
  • OR salt-minion-3000-46.151.2 is installed
  • OR salt-proxy-3000-46.151.2 is installed
  • OR salt-ssh-3000-46.151.2 is installed
  • OR salt-standalone-formulas-configuration-3000-46.151.2 is installed
  • OR salt-syndic-3000-46.151.2 is installed
  • OR salt-zsh-completion-3000-46.151.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND Package Information
  • postgresql10-10.10-4.16 is installed
  • OR postgresql10-test-10.10-4.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2 is installed
  • AND Package Information
  • libexif-0.6.22-5.6 is installed
  • OR libexif12-32bit-0.6.22-5.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 is installed
  • AND Package Information
  • libwireshark9-2.4.15-3.28 is installed
  • OR libwiretap7-2.4.15-3.28 is installed
  • OR libwscodecs1-2.4.15-3.28 is installed
  • OR libwsutil8-2.4.15-3.28 is installed
  • OR wireshark-2.4.15-3.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libpolkit0-0.114-3.9 is installed
  • OR polkit-0.114-3.9 is installed
  • OR polkit-devel-0.114-3.9 is installed
  • OR typelib-1_0-Polkit-1_0-0.114-3.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND dnsmasq-2.78-7.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 is installed
  • AND Package Information
  • gvim-8.0.1568-5.3 is installed
  • OR vim-8.0.1568-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • wireshark-2.4.15-3.28 is installed
  • OR wireshark-devel-2.4.15-3.28 is installed
  • OR wireshark-ui-qt-2.4.15-3.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND Package Information
  • libsolv-0.6.35-3.5 is installed
  • OR perl-solv-0.6.35-3.5 is installed
  • OR python3-solv-0.6.35-3.5 is installed
  • OR ruby-solv-0.6.35-3.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • libncurses5-6.1-5.3 is installed
  • OR libncurses5-32bit-6.1-5.3 is installed
  • OR ncurses-6.1-5.3 is installed
  • OR ncurses5-devel-6.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-25_3-default-2-2 is installed
  • OR kernel-livepatch-SLE15_Update_1-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.15 is installed
  • OR kernel-default-livepatch-4.12.14-197.15 is installed
  • OR kernel-default-livepatch-devel-4.12.14-197.15 is installed
  • OR kernel-livepatch-4_12_14-197_15-default-1-3.5 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_4-1-3.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
  • AND Package Information
  • git-2.16.4-3.9 is installed
  • OR git-credential-gnome-keyring-2.16.4-3.9 is installed
  • OR git-credential-libsecret-2.16.4-3.9 is installed
  • OR git-p4-2.16.4-3.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • containerd-1.2.5-5.13 is installed
  • OR containerd-ctr-1.2.5-5.13 is installed
  • OR containerd-test-1.2.5-5.13 is installed
  • OR docker-18.09.6_ce-6.17 is installed
  • OR docker-runc-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
  • OR docker-runc-test-1.0.0rc6+gitr3804_2b18fe1d885e-6.18 is installed
  • OR docker-test-18.09.6_ce-6.17 is installed
  • OR docker-zsh-completion-18.09.6_ce-6.17 is installed
  • OR go-1.12-3.10 is installed
  • OR go-doc-1.12-3.10 is installed
  • OR go-race-1.12-3.10 is installed
  • OR go1.11-1.11.9-1.12 is installed
  • OR go1.11-doc-1.11.9-1.12 is installed
  • OR go1.11-race-1.11.9-1.12 is installed
  • OR go1.12-1.12.4-1.9 is installed
  • OR go1.12-doc-1.12.4-1.9 is installed
  • OR go1.12-race-1.12.4-1.9 is installed
  • OR golang-github-docker-libnetwork-0.7.0.1+gitr2726_872f0a83c98a-4.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • opencv-3.3.1-6.6 is installed
  • OR opencv-doc-3.3.1-6.6 is installed
  • OR python2-opencv-3.3.1-6.6 is installed
  • OR python3-opencv-3.3.1-6.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • qemu-2.11.2-9.4 is installed
  • OR qemu-arm-2.11.2-9.4 is installed
  • OR qemu-block-curl-2.11.2-9.4 is installed
  • OR qemu-block-iscsi-2.11.2-9.4 is installed
  • OR qemu-block-rbd-2.11.2-9.4 is installed
  • OR qemu-block-ssh-2.11.2-9.4 is installed
  • OR qemu-guest-agent-2.11.2-9.4 is installed
  • OR qemu-ipxe-1.0.0-9.4 is installed
  • OR qemu-kvm-2.11.2-9.4 is installed
  • OR qemu-lang-2.11.2-9.4 is installed
  • OR qemu-ppc-2.11.2-9.4 is installed
  • OR qemu-s390-2.11.2-9.4 is installed
  • OR qemu-seabios-1.11.0-9.4 is installed
  • OR qemu-sgabios-8-9.4 is installed
  • OR qemu-vgabios-1.11.0-9.4 is installed
  • OR qemu-x86-2.11.2-9.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • xen-4.12.1_04-3.6 is installed
  • OR xen-devel-4.12.1_04-3.6 is installed
  • OR xen-tools-4.12.1_04-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-4.35 is installed
  • OR php7-7.2.5-4.35 is installed
  • OR php7-bcmath-7.2.5-4.35 is installed
  • OR php7-bz2-7.2.5-4.35 is installed
  • OR php7-calendar-7.2.5-4.35 is installed
  • OR php7-ctype-7.2.5-4.35 is installed
  • OR php7-curl-7.2.5-4.35 is installed
  • OR php7-dba-7.2.5-4.35 is installed
  • OR php7-devel-7.2.5-4.35 is installed
  • OR php7-dom-7.2.5-4.35 is installed
  • OR php7-enchant-7.2.5-4.35 is installed
  • OR php7-exif-7.2.5-4.35 is installed
  • OR php7-fastcgi-7.2.5-4.35 is installed
  • OR php7-fileinfo-7.2.5-4.35 is installed
  • OR php7-fpm-7.2.5-4.35 is installed
  • OR php7-ftp-7.2.5-4.35 is installed
  • OR php7-gd-7.2.5-4.35 is installed
  • OR php7-gettext-7.2.5-4.35 is installed
  • OR php7-gmp-7.2.5-4.35 is installed
  • OR php7-iconv-7.2.5-4.35 is installed
  • OR php7-intl-7.2.5-4.35 is installed
  • OR php7-json-7.2.5-4.35 is installed
  • OR php7-ldap-7.2.5-4.35 is installed
  • OR php7-mbstring-7.2.5-4.35 is installed
  • OR php7-mysql-7.2.5-4.35 is installed
  • OR php7-odbc-7.2.5-4.35 is installed
  • OR php7-opcache-7.2.5-4.35 is installed
  • OR php7-openssl-7.2.5-4.35 is installed
  • OR php7-pcntl-7.2.5-4.35 is installed
  • OR php7-pdo-7.2.5-4.35 is installed
  • OR php7-pear-7.2.5-4.35 is installed
  • OR php7-pear-Archive_Tar-7.2.5-4.35 is installed
  • OR php7-pgsql-7.2.5-4.35 is installed
  • OR php7-phar-7.2.5-4.35 is installed
  • OR php7-posix-7.2.5-4.35 is installed
  • OR php7-shmop-7.2.5-4.35 is installed
  • OR php7-snmp-7.2.5-4.35 is installed
  • OR php7-soap-7.2.5-4.35 is installed
  • OR php7-sockets-7.2.5-4.35 is installed
  • OR php7-sqlite-7.2.5-4.35 is installed
  • OR php7-sysvmsg-7.2.5-4.35 is installed
  • OR php7-sysvsem-7.2.5-4.35 is installed
  • OR php7-sysvshm-7.2.5-4.35 is installed
  • OR php7-tokenizer-7.2.5-4.35 is installed
  • OR php7-wddx-7.2.5-4.35 is installed
  • OR php7-xmlreader-7.2.5-4.35 is installed
  • OR php7-xmlrpc-7.2.5-4.35 is installed
  • OR php7-xmlwriter-7.2.5-4.35 is installed
  • OR php7-xsl-7.2.5-4.35 is installed
  • OR php7-zip-7.2.5-4.35 is installed
  • OR php7-zlib-7.2.5-4.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libIlmImf-Imf_2_1-21-2.1.0-4 is installed
  • OR openexr-2.1.0-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_32-default-5-2 is installed
  • OR kgraft-patch-3_12_69-60_64_32-xen-5-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_13-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • augeas-1.2.0-10 is installed
  • OR augeas-lenses-1.2.0-10 is installed
  • OR libaugeas0-1.2.0-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.13-28.31 is installed
  • OR libpython2_7-1_0-32bit-2.7.13-28.31 is installed
  • OR python-2.7.13-28.31 is installed
  • OR python-32bit-2.7.13-28.31 is installed
  • OR python-base-2.7.13-28.31 is installed
  • OR python-base-32bit-2.7.13-28.31 is installed
  • OR python-curses-2.7.13-28.31 is installed
  • OR python-demo-2.7.13-28.31 is installed
  • OR python-doc-2.7.13-28.31 is installed
  • OR python-doc-pdf-2.7.13-28.31 is installed
  • OR python-gdbm-2.7.13-28.31 is installed
  • OR python-idle-2.7.13-28.31 is installed
  • OR python-tk-2.7.13-28.31 is installed
  • OR python-xml-2.7.13-28.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_53-default-10-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_16-10-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_59-92_20-default-12-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_8-12-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libjasper1-1.900.14-194 is installed
  • OR libjasper1-32bit-1.900.14-194 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.28.1-3.49 is installed
  • OR libwebkit2gtk-4_0-37-2.28.1-3.49 is installed
  • OR libwebkit2gtk3-lang-2.28.1-3.49 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.28.1-3.49 is installed
  • OR webkit2gtk3-2.28.1-3.49 is installed
  • OR webkit2gtk3-devel-2.28.1-3.49 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • libecpg6-10.12-4.19 is installed
  • OR libpq5-10.12-4.19 is installed
  • OR postgresql10-10.12-4.19 is installed
  • OR postgresql10-contrib-10.12-4.19 is installed
  • OR postgresql10-devel-10.12-4.19 is installed
  • OR postgresql10-docs-10.12-4.19 is installed
  • OR postgresql10-plperl-10.12-4.19 is installed
  • OR postgresql10-plpython-10.12-4.19 is installed
  • OR postgresql10-pltcl-10.12-4.19 is installed
  • OR postgresql10-server-10.12-4.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.15 is installed
  • OR kernel-default-extra-4.12.14-197.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND mongodb-2.4.14-1 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND nodejs6-6.14.4-11.18 is installed
  • BACK