Oval Definition:oval:org.opensuse.security:def:51381
Revision Date:2020-12-01Version:1
Title:Security update for git (Important)
Description:

This update for git fixes the following issues:

- CVE-2018-17456: Git allowed remote code execution during processing of a recursive 'git clone' of a superproject if a .gitmodules file has a URL field beginning with a '-' character. (boo#1110949).

Family:unixClass:patch
Status:Reference(s):1044231
1051510
1051858
1056686
1060463
1065600
1065729
1071995
1083647
1085030
1100397
1103990
1103992
1104353
1104745
1109837
1109911
1110949
1111666
1111974
1112178
1112374
1113956
1114279
1114685
1118338
1119680
1120386
1123886
1127611
1129991
1133021
1134090
1136157
1136333
1137325
1141895
1142685
1144333
1144903
1145051
1145929
1146539
1148868
1149841
1151021
1152763
1153108
1153158
1153161
1153921
1156510
1157424
1158187
1158328
1158983
1159037
1159198
1159199
1159285
1160659
1161561
1161951
1162171
1162929
1162931
1163403
1163897
1163971
1164078
1164284
1164507
1164705
1164712
1164727
1164728
1164729
1164730
1164731
1164732
1164733
1164734
1164735
1164777
1164780
1164893
1165019
1165111
1165182
1165185
1165211
1165404
1165488
1165527
1165741
1165813
1165823
1165873
1165929
1165949
1165950
1165980
1165984
1165985
1166003
1166101
1166102
1166103
1166104
1166632
1166658
1166730
1166731
1166732
1166733
1166734
1166735
1166780
1166860
1166861
1166862
1166864
1166866
1166867
1166868
1166870
1166940
1166982
1167005
1167216
1167288
1167290
1167316
1167421
1167423
1167627
1167629
1168075
1168202
1168273
1168276
1168295
1168367
1168424
1168443
1168486
1168552
1168760
1168762
1168763
1168764
1168765
1168829
1168854
1168881
1168884
1168952
1168994
1169013
1169057
1169307
1169308
1169390
1169514
1169625
1173812
1174463
1174570
1175193
1175194
1175992
1176012
1176072
1176382
1176409
1176412
1176896
1177513
1177729
1178003
CVE-2011-3172
CVE-2012-0786
CVE-2013-0157
CVE-2014-8119
CVE-2014-8962
CVE-2014-9028
CVE-2014-9114
CVE-2015-5218
CVE-2018-17456
CVE-2019-10220
CVE-2019-11745
CVE-2019-13722
CVE-2019-14835
CVE-2019-17005
CVE-2019-17008
CVE-2019-17009
CVE-2019-17010
CVE-2019-17011
CVE-2019-17012
CVE-2019-17133
CVE-2019-19768
CVE-2019-19770
CVE-2019-3695
CVE-2019-3696
CVE-2019-3701
CVE-2019-9458
CVE-2020-0430
CVE-2020-0431
CVE-2020-10713
CVE-2020-10942
CVE-2020-11494
CVE-2020-11669
CVE-2020-12351
CVE-2020-14308
CVE-2020-14309
CVE-2020-14310
CVE-2020-14311
CVE-2020-14349
CVE-2020-14350
CVE-2020-14381
CVE-2020-14386
CVE-2020-14392
CVE-2020-14393
CVE-2020-15706
CVE-2020-15707
CVE-2020-24394
CVE-2020-25212
CVE-2020-25645
CVE-2020-2732
CVE-2020-8647
CVE-2020-8649
CVE-2020-8834
CVE-2020-9383
SUSE-SU-2018:3150-1
SUSE-SU-2019:3212-1
SUSE-SU-2019:3339-1
SUSE-SU-2020:0357-1
SUSE-SU-2020:1087-1
SUSE-SU-2020:2073-1
SUSE-SU-2020:2355-1
SUSE-SU-2020:2645-1
Platform(s):openSUSE Leap 15.0
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Public Cloud 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP2
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • kdelibs4-4.14.38-lp150.5 is installed
  • OR kdelibs4-branding-upstream-4.14.38-lp150.5 is installed
  • OR kdelibs4-core-4.14.38-lp150.5 is installed
  • OR libkde4-4.14.38-lp150.5 is installed
  • OR libkdecore4-4.14.38-lp150.5 is installed
  • OR libksuseinstall1-4.14.38-lp150.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • libQtWebKit4-4.6.3-5.20.23 is installed
  • OR libQtWebKit4-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-4.6.3-5.20.23 is installed
  • OR libqt4-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-qt3support-4.6.3-5.20.23 is installed
  • OR libqt4-qt3support-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-sql-4.6.3-5.20.23 is installed
  • OR libqt4-sql-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-sql-mysql-4.6.3-5.20.23 is installed
  • OR libqt4-sql-mysql-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-sql-postgresql-4.6.3-5.20.23 is installed
  • OR libqt4-sql-postgresql-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-sql-sqlite-4.6.3-5.20.23 is installed
  • OR libqt4-sql-sqlite-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-sql-unixODBC-4.6.3-5.20.23 is installed
  • OR libqt4-sql-unixODBC-32bit-4.6.3-5.20.23 is installed
  • OR libqt4-x11-4.6.3-5.20.23 is installed
  • OR libqt4-x11-32bit-4.6.3-5.20.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • flash-player-11.2.202.481-0.8 is installed
  • OR flash-player-gnome-11.2.202.481-0.8 is installed
  • OR flash-player-kde4-11.2.202.481-0.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • giflib-4.1.6-13 is installed
  • OR giflib-32bit-4.1.6-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • pam-modules-12.1-23 is installed
  • OR pam-modules-32bit-12.1-23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libFLAC8-1.3.0-6 is installed
  • OR libFLAC8-32bit-1.3.0-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • finch-2.11.0-12 is installed
  • OR libpurple-2.11.0-12 is installed
  • OR libpurple-lang-2.11.0-12 is installed
  • OR libpurple-meanwhile-2.11.0-12 is installed
  • OR libpurple-tcl-2.11.0-12 is installed
  • OR pidgin-2.11.0-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • cron-4.2-58 is installed
  • OR cronie-1.4.11-58 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • cups-1.7.5-20.17 is installed
  • OR cups-client-1.7.5-20.17 is installed
  • OR cups-libs-1.7.5-20.17 is installed
  • OR cups-libs-32bit-1.7.5-20.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND Package Information
  • postgresql-10-8.3 is installed
  • OR postgresql-test-10-8.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND Package Information
  • git-2.16.4-3.6 is installed
  • OR git-arch-2.16.4-3.6 is installed
  • OR git-cvs-2.16.4-3.6 is installed
  • OR git-daemon-2.16.4-3.6 is installed
  • OR git-doc-2.16.4-3.6 is installed
  • OR git-email-2.16.4-3.6 is installed
  • OR git-gui-2.16.4-3.6 is installed
  • OR git-svn-2.16.4-3.6 is installed
  • OR git-web-2.16.4-3.6 is installed
  • OR gitk-2.16.4-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-150_14-default-4-2 is installed
  • OR kernel-livepatch-SLE15_Update_9-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-195-default-7-19 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_0-7-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
  • AND Package Information
  • kernel-azure-4.12.14-8.30 is installed
  • OR kernel-azure-base-4.12.14-8.30 is installed
  • OR kernel-azure-devel-4.12.14-8.30 is installed
  • OR kernel-devel-azure-4.12.14-8.30 is installed
  • OR kernel-source-azure-4.12.14-8.30 is installed
  • OR kernel-syms-azure-4.12.14-8.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
  • AND Package Information
  • postgresql10-10.14-8.19 is installed
  • OR postgresql10-contrib-10.14-8.19 is installed
  • OR postgresql10-devel-10.14-8.19 is installed
  • OR postgresql10-docs-10.14-8.19 is installed
  • OR postgresql10-plperl-10.14-8.19 is installed
  • OR postgresql10-plpython-10.14-8.19 is installed
  • OR postgresql10-pltcl-10.14-8.19 is installed
  • OR postgresql10-server-10.14-8.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • openvpn-2.3.8-16.3 is installed
  • OR openvpn-auth-pam-plugin-2.3.8-16.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_62-60_64_8-default-11-2 is installed
  • OR kgraft-patch-3_12_62-60_64_8-xen-11-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_8-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • kernel-default-4.4.21-69 is installed
  • OR kernel-default-base-4.4.21-69 is installed
  • OR kernel-default-devel-4.4.21-69 is installed
  • OR kernel-default-man-4.4.21-69 is installed
  • OR kernel-devel-4.4.21-69 is installed
  • OR kernel-macros-4.4.21-69 is installed
  • OR kernel-source-4.4.21-69 is installed
  • OR kernel-syms-4.4.21-69 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • res-signingkeys-3.0.37-52.23 is installed
  • OR smt-3.0.37-52.23 is installed
  • OR smt-support-3.0.37-52.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kernel-firmware-20170530-21.22 is installed
  • OR ucode-amd-20170530-21.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_56-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_17-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • audiofile-0.3.6-10 is installed
  • OR libaudiofile1-0.3.6-10 is installed
  • OR libaudiofile1-32bit-0.3.6-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • kernel-default-4.4.180-94.107 is installed
  • OR kernel-default-base-4.4.180-94.107 is installed
  • OR kernel-default-devel-4.4.180-94.107 is installed
  • OR kernel-devel-4.4.180-94.107 is installed
  • OR kernel-macros-4.4.180-94.107 is installed
  • OR kernel-source-4.4.180-94.107 is installed
  • OR kernel-syms-4.4.180-94.107 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.55 is installed
  • OR openssl-1.0.2j-60.55 is installed
  • OR openssl-doc-1.0.2j-60.55 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpolkit0-0.113-5.18 is installed
  • OR polkit-0.113-5.18 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND gd-2.1.0-24.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libltdl7-2.4.2-17.4 is installed
  • OR libltdl7-32bit-2.4.2-17.4 is installed
  • OR libtool-2.4.2-17.4 is installed
  • OR libtool-32bit-2.4.2-17.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND perl-DBI-1.639-3.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • grub2-2.02-19.48 is installed
  • OR grub2-i386-pc-2.02-19.48 is installed
  • OR grub2-powerpc-ieee1275-2.02-19.48 is installed
  • OR grub2-snapper-plugin-2.02-19.48 is installed
  • OR grub2-systemd-sleep-plugin-2.02-19.48 is installed
  • OR grub2-x86_64-efi-2.02-19.48 is installed
  • OR grub2-x86_64-xen-2.02-19.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • MozillaThunderbird-68.3.0-3.61 is installed
  • OR MozillaThunderbird-translations-common-68.3.0-3.61 is installed
  • OR MozillaThunderbird-translations-other-68.3.0-3.61 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.25-38.23 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.25-38.23 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libecpg6-10.9-1.12 is installed
  • OR libpq5-10.9-1.12 is installed
  • OR libpq5-32bit-10.9-1.12 is installed
  • OR postgresql10-10.9-1.12 is installed
  • OR postgresql10-contrib-10.9-1.12 is installed
  • OR postgresql10-docs-10.9-1.12 is installed
  • OR postgresql10-libs-10.9-1.12 is installed
  • OR postgresql10-plperl-10.9-1.12 is installed
  • OR postgresql10-plpython-10.9-1.12 is installed
  • OR postgresql10-pltcl-10.9-1.12 is installed
  • OR postgresql10-server-10.9-1.12 is installed
  • BACK