Oval Definition:oval:org.opensuse.security:def:51563
Revision Date:2022-11-21Version:1
Title:Security update for grub2 (Important)
Description:

This update for grub2 fixes the following issues:

- CVE-2022-2601: Fixed buffer overflow in grub_font_construct_glyph (bsc#1205178). - CVE-2022-3775: Fixed integer underflow in blit_comb() (bsc#1205182). Other:

- Bump upstream SBAT generation to 3
Family:unixClass:patch
Status:Reference(s):1012382
1037697
1046299
1046300
1046302
1046303
1046305
1046306
1046307
1046533
1046543
1050242
1050536
1050538
1050540
1051510
1054245
1055014
1056651
1056787
1058169
1058659
1060463
1061843
1065600
1065729
1066382
1068032
1075087
1075360
1077338
1077428
1077761
1077989
1081947
1082293
1085042
1085196
1085536
1085539
1086301
1086313
1086314
1086324
1086457
1087092
1087202
1087217
1087233
1090098
1090638
1090888
1091041
1091171
1093148
1093536
1093666
1094119
1094462
1096330
1097583
1097584
1097585
1097586
1097587
1097588
1098633
1099193
1099358
1100132
1100884
1101143
1101337
1101352
1101564
1101669
1101674
1101789
1101813
1101816
1102088
1102097
1102147
1102340
1102512
1102851
1103216
1103220
1103230
1103421
1106214
1107874
1109845
1112178
1121197
1122417
1124781
1125886
1127701
1129124
1131277
1134760
1135534
1135708
1136440
1141113
1142988
1144363
1151488
1154092
1164903
1170415
1171558
1172402
1173432
1173477
1173786
1174748
1176354
1176485
1176560
1176713
1176723
1177086
1177101
1177271
1177281
1177351
1177352
1177410
1177411
1177470
1177687
1177719
1177740
1177749
1177750
1177753
1177754
1177755
1177766
1177855
1177856
1177861
1178003
1178027
1178166
1178185
1178187
1178188
1178202
1178234
1178330
1178750
1178752
1178753
1185408
1185409
1185410
1185698
1205178
1205182
353876
CVE-2006-0855
CVE-2007-1669
CVE-2007-4129
CVE-2012-5112
CVE-2012-5133
CVE-2013-0221
CVE-2013-0222
CVE-2013-0223
CVE-2014-1344
CVE-2014-1384
CVE-2014-1385
CVE-2014-1386
CVE-2014-1387
CVE-2014-1388
CVE-2014-1389
CVE-2014-1390
CVE-2014-5461
CVE-2015-2330
CVE-2015-4041
CVE-2015-4042
CVE-2017-17833
CVE-2017-18344
CVE-2017-18922
CVE-2018-10811
CVE-2018-16151
CVE-2018-16152
CVE-2018-17540
CVE-2018-20340
CVE-2018-5388
CVE-2018-5390
CVE-2019-0816
CVE-2020-0430
CVE-2020-12398
CVE-2020-12405
CVE-2020-12406
CVE-2020-12410
CVE-2020-14351
CVE-2020-16120
CVE-2020-25285
CVE-2020-25656
CVE-2020-27673
CVE-2020-27675
CVE-2020-28362
CVE-2020-28366
CVE-2020-28367
CVE-2020-7069
CVE-2020-7070
CVE-2020-8694
CVE-2021-3516
CVE-2021-3517
CVE-2021-3518
CVE-2021-3537
CVE-2022-2601
CVE-2022-3775
SUSE-SU-2018:1917-1
SUSE-SU-2018:2223-1
SUSE-SU-2019:1340-1
SUSE-SU-2019:2307-1
SUSE-SU-2019:3056-1
SUSE-SU-2019:3096-1
SUSE-SU-2020:1591-1
SUSE-SU-2020:1873-1
SUSE-SU-2020:2997-1
SUSE-SU-2020:3369-1
SUSE-SU-2021:1658-1
SUSE-SU-2022:4141-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap Micro 5.3
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Module for Development Tools 15 SP2
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15
SUSE Linux Enterprise Module for Public Cloud 15 SP1
SUSE Linux Enterprise Module for Server Applications 15
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND openssl-1.1.0h-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap Micro 5.3 is installed
  • AND Package Information
  • grub2-2.06-150400.11.17.1 is installed
  • OR grub2-arm64-efi-2.06-150400.11.17.1 is installed
  • OR grub2-i386-pc-2.06-150400.11.17.1 is installed
  • OR grub2-snapper-plugin-2.06-150400.11.17.1 is installed
  • OR grub2-x86_64-efi-2.06-150400.11.17.1 is installed
  • OR grub2-x86_64-xen-2.06-150400.11.17.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • libmysql55client18-5.5.39-0.7 is installed
  • OR libmysql55client18-32bit-5.5.39-0.7 is installed
  • OR libmysql55client_r18-5.5.39-0.7 is installed
  • OR libmysql55client_r18-32bit-5.5.39-0.7 is installed
  • OR libmysqlclient15-5.0.96-0.6 is installed
  • OR libmysqlclient15-32bit-5.0.96-0.6 is installed
  • OR libmysqlclient_r15-5.0.96-0.6 is installed
  • OR libmysqlclient_r15-32bit-5.0.96-0.6 is installed
  • OR mysql-5.5.39-0.7 is installed
  • OR mysql-client-5.5.39-0.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libecpg6-9.4.6-0.14 is installed
  • OR libpq5-9.4.6-0.14 is installed
  • OR libpq5-32bit-9.4.6-0.14 is installed
  • OR postgresql94-9.4.6-0.14 is installed
  • OR postgresql94-docs-9.4.6-0.14 is installed
  • OR postgresql94-libs-9.4.6-0.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • liblua5_2-5.2.2-4 is installed
  • OR lua-5.2.2-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libjavascriptcoregtk-1_0-0-2.4.8-16 is installed
  • OR libjavascriptcoregtk-1_0-0-32bit-2.4.8-16 is installed
  • OR libjavascriptcoregtk-3_0-0-2.4.8-16 is installed
  • OR libwebkit2gtk-3_0-25-2.4.8-16 is installed
  • OR libwebkitgtk-1_0-0-2.4.8-16 is installed
  • OR libwebkitgtk-1_0-0-32bit-2.4.8-16 is installed
  • OR libwebkitgtk-3_0-0-2.4.8-16 is installed
  • OR libwebkitgtk2-lang-2.4.8-16 is installed
  • OR libwebkitgtk3-lang-2.4.8-16 is installed
  • OR typelib-1_0-JavaScriptCore-3_0-2.4.8-16 is installed
  • OR typelib-1_0-WebKit-3_0-2.4.8-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND coolkey-1.1.0-147 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • NetworkManager-1.0.12-12 is installed
  • OR NetworkManager-lang-1.0.12-12 is installed
  • OR libnm-glib-vpn1-1.0.12-12 is installed
  • OR libnm-glib4-1.0.12-12 is installed
  • OR libnm-util2-1.0.12-12 is installed
  • OR libnm0-1.0.12-12 is installed
  • OR typelib-1_0-NM-1_0-1.0.12-12 is installed
  • OR typelib-1_0-NMClient-1_0-1.0.12-12 is installed
  • OR typelib-1_0-NetworkManager-1_0-1.0.12-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gnutls-3.3.27-3.3 is installed
  • OR libgnutls28-3.3.27-3.3 is installed
  • OR libgnutls28-32bit-3.3.27-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND Package Information
  • strongswan-5.6.0-4.3 is installed
  • OR strongswan-nm-5.6.0-4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • LibVNCServer-0.9.10-4.19 is installed
  • OR libvncserver0-0.9.10-4.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP2 is installed
  • AND Package Information
  • go1.14-1.14.12-1.26 is installed
  • OR go1.14-doc-1.14.12-1.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.67 is installed
  • OR kernel-default-livepatch-4.12.14-197.67 is installed
  • OR kernel-default-livepatch-devel-4.12.14-197.67 is installed
  • OR kernel-livepatch-4_12_14-197_67-default-1-3.3 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_18-1-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
  • AND Package Information
  • libu2f-host-1.1.6-3.3 is installed
  • OR libu2f-host-doc-1.1.6-3.3 is installed
  • OR u2f-host-1.1.6-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 15 SP1 is installed
  • AND Package Information
  • cloud-init-19.2-8.11 is installed
  • OR cloud-init-config-suse-19.2-8.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 is installed
  • AND Package Information
  • openslp-2.0.0-6.3 is installed
  • OR openslp-server-2.0.0-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • util-linux-systemd-2.33.1-4.5 is installed
  • OR uuidd-2.33.1-4.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libXinerama1-1.1.3-3 is installed
  • OR libXinerama1-32bit-1.1.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_51-default-5-2 is installed
  • OR kgraft-patch-3_12_74-60_64_51-xen-5-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_18-5-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • apache2-2.4.23-14 is installed
  • OR apache2-doc-2.4.23-14 is installed
  • OR apache2-example-pages-2.4.23-14 is installed
  • OR apache2-prefork-2.4.23-14 is installed
  • OR apache2-utils-2.4.23-14 is installed
  • OR apache2-worker-2.4.23-14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libsystemd0-228-150.53 is installed
  • OR libsystemd0-32bit-228-150.53 is installed
  • OR libudev1-228-150.53 is installed
  • OR libudev1-32bit-228-150.53 is installed
  • OR systemd-228-150.53 is installed
  • OR systemd-32bit-228-150.53 is installed
  • OR systemd-bash-completion-228-150.53 is installed
  • OR systemd-sysvinit-228-150.53 is installed
  • OR udev-228-150.53 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • openssh-7.2p2-74.25 is installed
  • OR openssh-askpass-gnome-7.2p2-74.25 is installed
  • OR openssh-fips-7.2p2-74.25 is installed
  • OR openssh-helpers-7.2p2-74.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libmysqlclient18-10.0.35-29.20 is installed
  • OR libmysqlclient18-32bit-10.0.35-29.20 is installed
  • OR mariadb-10.0.35-29.20 is installed
  • OR mariadb-client-10.0.35-29.20 is installed
  • OR mariadb-errormessages-10.0.35-29.20 is installed
  • OR mariadb-tools-10.0.35-29.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • ibus-chewing-1.4.14-4 is installed
  • OR ibus-pinyin-1.5.0-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ghostscript-9.27-23.28 is installed
  • OR ghostscript-x11-9.27-23.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.242-27.41 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.242-27.41 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.242-27.41 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.242-27.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • MozillaFirefox-68.5.0-109.106 is installed
  • OR MozillaFirefox-translations-common-68.5.0-109.106 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libwireshark9-2.4.9-48.29 is installed
  • OR libwiretap7-2.4.9-48.29 is installed
  • OR libwscodecs1-2.4.9-48.29 is installed
  • OR libwsutil8-2.4.9-48.29 is installed
  • OR wireshark-2.4.9-48.29 is installed
  • OR wireshark-gtk-2.4.9-48.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND busybox-1.21.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-4.67 is installed
  • OR php7-7.2.5-4.67 is installed
  • OR php7-bcmath-7.2.5-4.67 is installed
  • OR php7-bz2-7.2.5-4.67 is installed
  • OR php7-calendar-7.2.5-4.67 is installed
  • OR php7-ctype-7.2.5-4.67 is installed
  • OR php7-curl-7.2.5-4.67 is installed
  • OR php7-dba-7.2.5-4.67 is installed
  • OR php7-devel-7.2.5-4.67 is installed
  • OR php7-dom-7.2.5-4.67 is installed
  • OR php7-enchant-7.2.5-4.67 is installed
  • OR php7-exif-7.2.5-4.67 is installed
  • OR php7-fastcgi-7.2.5-4.67 is installed
  • OR php7-fileinfo-7.2.5-4.67 is installed
  • OR php7-fpm-7.2.5-4.67 is installed
  • OR php7-ftp-7.2.5-4.67 is installed
  • OR php7-gd-7.2.5-4.67 is installed
  • OR php7-gettext-7.2.5-4.67 is installed
  • OR php7-gmp-7.2.5-4.67 is installed
  • OR php7-iconv-7.2.5-4.67 is installed
  • OR php7-intl-7.2.5-4.67 is installed
  • OR php7-json-7.2.5-4.67 is installed
  • OR php7-ldap-7.2.5-4.67 is installed
  • OR php7-mbstring-7.2.5-4.67 is installed
  • OR php7-mysql-7.2.5-4.67 is installed
  • OR php7-odbc-7.2.5-4.67 is installed
  • OR php7-opcache-7.2.5-4.67 is installed
  • OR php7-openssl-7.2.5-4.67 is installed
  • OR php7-pcntl-7.2.5-4.67 is installed
  • OR php7-pdo-7.2.5-4.67 is installed
  • OR php7-pear-7.2.5-4.67 is installed
  • OR php7-pear-Archive_Tar-7.2.5-4.67 is installed
  • OR php7-pgsql-7.2.5-4.67 is installed
  • OR php7-phar-7.2.5-4.67 is installed
  • OR php7-posix-7.2.5-4.67 is installed
  • OR php7-readline-7.2.5-4.67 is installed
  • OR php7-shmop-7.2.5-4.67 is installed
  • OR php7-snmp-7.2.5-4.67 is installed
  • OR php7-soap-7.2.5-4.67 is installed
  • OR php7-sockets-7.2.5-4.67 is installed
  • OR php7-sodium-7.2.5-4.67 is installed
  • OR php7-sqlite-7.2.5-4.67 is installed
  • OR php7-sysvmsg-7.2.5-4.67 is installed
  • OR php7-sysvsem-7.2.5-4.67 is installed
  • OR php7-sysvshm-7.2.5-4.67 is installed
  • OR php7-tokenizer-7.2.5-4.67 is installed
  • OR php7-wddx-7.2.5-4.67 is installed
  • OR php7-xmlreader-7.2.5-4.67 is installed
  • OR php7-xmlrpc-7.2.5-4.67 is installed
  • OR php7-xmlwriter-7.2.5-4.67 is installed
  • OR php7-xsl-7.2.5-4.67 is installed
  • OR php7-zip-7.2.5-4.67 is installed
  • OR php7-zlib-7.2.5-4.67 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
  • AND Package Information
  • libxml2-2-2.9.4-46.43.1 is installed
  • OR libxml2-2-32bit-2.9.4-46.43.1 is installed
  • OR libxml2-doc-2.9.4-46.43.1 is installed
  • OR libxml2-tools-2.9.4-46.43.1 is installed
  • OR python-libxml2-2.9.4-46.43.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-25.6 is installed
  • OR kernel-default-extra-4.12.14-25.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • MozillaThunderbird-68.9.0-3.85 is installed
  • OR MozillaThunderbird-translations-common-68.9.0-3.85 is installed
  • OR MozillaThunderbird-translations-other-68.9.0-3.85 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • MozillaFirefox-52.5.0esr-109.9 is installed
  • OR MozillaFirefox-devel-52.5.0esr-109.9 is installed
  • OR MozillaFirefox-translations-52.5.0esr-109.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.20-30.36 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.50-38.41 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-cryptography-2.0.3-3.3 is installed
  • BACK