Oval Definition:oval:org.opensuse.security:def:51993
Revision Date:2023-01-23Version:1
Title:Security update for tpm2-0-tss (Moderate) (in QA)
Description:

This update for tpm2-0-tss fixes the following issues:

- CVE-2023-22745: Fixed a memory safety issue that could be exploited by local attackers with TPM access (bsc#1207325).

This patch is currently in QA and not yet available for download.
Family:unixClass:patch
Status:Reference(s):1046299
1046303
1046305
1048942
1050244
1050536
1050545
1051510
1054914
1055117
1055186
1061840
1064802
1065600
1065729
1066129
1071995
1073513
1082555
1082635
1083647
1086323
1087092
1089644
1090631
1091041
1093205
1096254
1097583
1097584
1097585
1097586
1097587
1097588
1098291
1101674
1104967
1109158
1111666
1112178
1112438
1113722
1113994
1114279
1117665
1119086
1119461
1119465
1123034
1123080
1125689
1127988
1131107
1131304
1133140
1134303
1134616
1135642
1135854
1135873
1135966
1135967
1137040
1137069
1137799
1137861
1137865
1137959
1137982
1138190
1139073
1139924
1140090
1140155
1140729
1140845
1140883
1141013
1141600
1142076
1142635
1142667
1143706
1144338
1144375
1144449
1144903
1145099
1146042
1146182
1146184
1146519
1146540
1146612
1146664
1148133
1148410
1148712
1148868
1149119
1149313
1149446
1149448
1149555
1149651
1149853
1150305
1150381
1150423
1150452
1150457
1150465
1150466
1150846
1150875
1151067
1151192
1151350
1151508
1151610
1151661
1151662
1151667
1151680
1151807
1151891
1151955
1152024
1152025
1152026
1152033
1152161
1152187
1152243
1152325
1152457
1152460
1152466
1152497
1152505
1152506
1152525
1152624
1152665
1152685
1152696
1152697
1152782
1152788
1152790
1152791
1152972
1152974
1152975
1153112
1153158
1153236
1153263
1153476
1153509
1153607
1153646
1153681
1153713
1153717
1153718
1153719
1153811
1153969
1154108
1154124
1154189
1154242
1154268
1154354
1154372
1154521
1154526
1154578
1154601
1154607
1154608
1154610
1154611
1154651
1154737
1154747
1154848
1154858
1154905
1154956
1155021
1155061
1155178
1155179
1155184
1155186
1155671
1155692
1155812
1155817
1155836
1155945
1155982
1156187
1156429
1156466
1156494
1156609
1156700
1156729
1156882
1159723
1159729
1160904
1160906
1161025
1164692
1164825
1164860
1170771
1172356
1174543
1178512
1193170
1207325
CVE-2010-0407
CVE-2010-4531
CVE-2011-1946
CVE-2012-1571
CVE-2013-2492
CVE-2014-0011
CVE-2014-0172
CVE-2014-3710
CVE-2014-4910
CVE-2014-8116
CVE-2014-8117
CVE-2014-8240
CVE-2014-9447
CVE-2015-0255
CVE-2016-9957
CVE-2016-9958
CVE-2016-9959
CVE-2016-9960
CVE-2016-9961
CVE-2017-18595
CVE-2018-12207
CVE-2019-0154
CVE-2019-0155
CVE-2019-10072
CVE-2019-10220
CVE-2019-11135
CVE-2019-12418
CVE-2019-14821
CVE-2019-15291
CVE-2019-15916
CVE-2019-16231
CVE-2019-16232
CVE-2019-16233
CVE-2019-16234
CVE-2019-16995
CVE-2019-17055
CVE-2019-17056
CVE-2019-17133
CVE-2019-17563
CVE-2019-17569
CVE-2019-17666
CVE-2019-18805
CVE-2019-18903
CVE-2019-9506
CVE-2019-9511
CVE-2019-9513
CVE-2020-12243
CVE-2020-1935
CVE-2020-1938
CVE-2020-28196
CVE-2020-7217
CVE-2021-43527
CVE-2023-22745
SUSE-SU-2019:2473-1
SUSE-SU-2019:3295-1
SUSE-SU-2020:0226-1
SUSE-SU-2020:0370-1
SUSE-SU-2020:0631-1
SUSE-SU-2020:1219-1
SUSE-SU-2020:3377-1
SUSE-SU-2021:3939-1
Platform(s):openSUSE Leap 15.0
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Micro 5.3
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 12 SP4
SUSE Linux Enterprise Server for SAP Applications 15
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • grep-3.1-lp150.2 is installed
  • OR grep-lang-3.1-lp150.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND libaugeas0-0.9.0-3.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND libfbembed2_5-2.5.2.26539-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • elfutils-0.158-6 is installed
  • OR libasm1-0.158-6 is installed
  • OR libdw1-0.158-6 is installed
  • OR libdw1-32bit-0.158-6 is installed
  • OR libebl1-0.158-6 is installed
  • OR libebl1-32bit-0.158-6 is installed
  • OR libelf1-0.158-6 is installed
  • OR libelf1-32bit-0.158-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • file-5.19-9 is installed
  • OR file-magic-5.19-9 is installed
  • OR libmagic1-5.19-9 is installed
  • OR libmagic1-32bit-5.19-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libXvnc1-1.6.0-18.11 is installed
  • OR tigervnc-1.6.0-18.11 is installed
  • OR xorg-x11-Xvnc-1.6.0-18.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • cpp48-4.8.5-31.17 is installed
  • OR gcc48-4.8.5-31.17 is installed
  • OR gcc48-32bit-4.8.5-31.17 is installed
  • OR gcc48-c++-4.8.5-31.17 is installed
  • OR gcc48-gij-4.8.5-31.17 is installed
  • OR gcc48-gij-32bit-4.8.5-31.17 is installed
  • OR gcc48-info-4.8.5-31.17 is installed
  • OR libasan0-4.8.5-31.17 is installed
  • OR libasan0-32bit-4.8.5-31.17 is installed
  • OR libgcj48-4.8.5-31.17 is installed
  • OR libgcj48-32bit-4.8.5-31.17 is installed
  • OR libgcj48-jar-4.8.5-31.17 is installed
  • OR libgcj_bc1-4.8.5-31.17 is installed
  • OR libstdc++48-devel-4.8.5-31.17 is installed
  • OR libstdc++48-devel-32bit-4.8.5-31.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Micro 5.3 is installed
  • AND Package Information
  • libtss2-esys0-3.1.0-150400.3.3.1 is installed
  • OR libtss2-fapi1-3.1.0-150400.3.3.1 is installed
  • OR libtss2-mu0-3.1.0-150400.3.3.1 is installed
  • OR libtss2-rc0-3.1.0-150400.3.3.1 is installed
  • OR libtss2-sys1-3.1.0-150400.3.3.1 is installed
  • OR libtss2-tcti-device0-3.1.0-150400.3.3.1 is installed
  • OR libtss2-tctildr0-3.1.0-150400.3.3.1 is installed
  • OR tpm2-0-tss-3.1.0-150400.3.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • libnghttp2_asio1-32bit-1.39.2-3.3 is installed
  • OR nghttp2-1.39.2-3.3 is installed
  • OR nghttp2-python-1.39.2-3.3 is installed
  • OR python3-nghttp2-1.39.2-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • krb5-1.16.3-3.15 is installed
  • OR krb5-plugin-kdb-ldap-1.16.3-3.15 is installed
  • OR krb5-server-1.16.3-3.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 is installed
  • AND Package Information
  • tomcat-9.0.30-3.34 is installed
  • OR tomcat-admin-webapps-9.0.30-3.34 is installed
  • OR tomcat-el-3_0-api-9.0.30-3.34 is installed
  • OR tomcat-jsp-2_3-api-9.0.30-3.34 is installed
  • OR tomcat-lib-9.0.30-3.34 is installed
  • OR tomcat-servlet-4_0-api-9.0.30-3.34 is installed
  • OR tomcat-webapps-9.0.30-3.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • tomcat-9.0.31-4.22 is installed
  • OR tomcat-admin-webapps-9.0.31-4.22 is installed
  • OR tomcat-el-3_0-api-9.0.31-4.22 is installed
  • OR tomcat-jsp-2_3-api-9.0.31-4.22 is installed
  • OR tomcat-lib-9.0.31-4.22 is installed
  • OR tomcat-servlet-4_0-api-9.0.31-4.22 is installed
  • OR tomcat-webapps-9.0.31-4.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND mipv6d-2.0.2.umip.0.4-19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • MozillaFirefox-68.3.0-109.98 is installed
  • OR MozillaFirefox-devel-68.3.0-109.98 is installed
  • OR MozillaFirefox-translations-common-68.3.0-109.98 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libvirt-2.0.0-27.42 is installed
  • OR libvirt-client-2.0.0-27.42 is installed
  • OR libvirt-daemon-2.0.0-27.42 is installed
  • OR libvirt-daemon-config-network-2.0.0-27.42 is installed
  • OR libvirt-daemon-config-nwfilter-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-interface-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-libxl-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-lxc-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-network-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-nodedev-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-nwfilter-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-qemu-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-secret-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-storage-2.0.0-27.42 is installed
  • OR libvirt-daemon-hooks-2.0.0-27.42 is installed
  • OR libvirt-daemon-lxc-2.0.0-27.42 is installed
  • OR libvirt-daemon-qemu-2.0.0-27.42 is installed
  • OR libvirt-daemon-xen-2.0.0-27.42 is installed
  • OR libvirt-doc-2.0.0-27.42 is installed
  • OR libvirt-lock-sanlock-2.0.0-27.42 is installed
  • OR libvirt-nss-2.0.0-27.42 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_90-92_50-default-11-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_15-11-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • gpg2-2.0.24-9.3 is installed
  • OR gpg2-lang-2.0.24-9.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND
  • libssh2-1-1.4.3-20.9 is installed
  • OR libssh2-1-32bit-1.4.3-20.9 is installed
  • OR libssh2_org-1.4.3-20.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • cvs-1.12.12-181 is installed
  • OR cvs-doc-1.12.12-181 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • glibc-2.22-62.22 is installed
  • OR glibc-32bit-2.22-62.22 is installed
  • OR glibc-devel-2.22-62.22 is installed
  • OR glibc-devel-32bit-2.22-62.22 is installed
  • OR glibc-html-2.22-62.22 is installed
  • OR glibc-i18ndata-2.22-62.22 is installed
  • OR glibc-info-2.22-62.22 is installed
  • OR glibc-locale-2.22-62.22 is installed
  • OR glibc-locale-32bit-2.22-62.22 is installed
  • OR glibc-profile-2.22-62.22 is installed
  • OR glibc-profile-32bit-2.22-62.22 is installed
  • OR nscd-2.22-62.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.222-27.35 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.222-27.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_143-94_47-default-7-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_16-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libSoundTouch0-1.7.1-5.3 is installed
  • OR soundtouch-1.7.1-5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cups-1.7.5-20.17 is installed
  • OR cups-client-1.7.5-20.17 is installed
  • OR cups-libs-1.7.5-20.17 is installed
  • OR cups-libs-32bit-1.7.5-20.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • xen-4.10.4_14-3.38 is installed
  • OR xen-devel-4.10.4_14-3.38 is installed
  • OR xen-libs-4.10.4_14-3.38 is installed
  • OR xen-tools-4.10.4_14-3.38 is installed
  • OR xen-tools-domU-4.10.4_14-3.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
  • AND Package Information
  • libfreebl3-3.68.1-58.57.1 is installed
  • OR libfreebl3-32bit-3.68.1-58.57.1 is installed
  • OR libfreebl3-hmac-3.68.1-58.57.1 is installed
  • OR libfreebl3-hmac-32bit-3.68.1-58.57.1 is installed
  • OR libsoftokn3-3.68.1-58.57.1 is installed
  • OR libsoftokn3-32bit-3.68.1-58.57.1 is installed
  • OR libsoftokn3-hmac-3.68.1-58.57.1 is installed
  • OR libsoftokn3-hmac-32bit-3.68.1-58.57.1 is installed
  • OR mozilla-nss-3.68.1-58.57.1 is installed
  • OR mozilla-nss-32bit-3.68.1-58.57.1 is installed
  • OR mozilla-nss-certs-3.68.1-58.57.1 is installed
  • OR mozilla-nss-certs-32bit-3.68.1-58.57.1 is installed
  • OR mozilla-nss-devel-3.68.1-58.57.1 is installed
  • OR mozilla-nss-sysinit-3.68.1-58.57.1 is installed
  • OR mozilla-nss-sysinit-32bit-3.68.1-58.57.1 is installed
  • OR mozilla-nss-tools-3.68.1-58.57.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • libldap-2_4-2-2.4.46-9.28 is installed
  • OR libldap-2_4-2-32bit-2.4.46-9.28 is installed
  • OR libldap-data-2.4.46-9.28 is installed
  • OR openldap2-2.4.46-9.28 is installed
  • OR openldap2-back-meta-2.4.46-9.28 is installed
  • OR openldap2-back-perl-2.4.46-9.28 is installed
  • OR openldap2-client-2.4.46-9.28 is installed
  • OR openldap2-devel-2.4.46-9.28 is installed
  • OR openldap2-devel-32bit-2.4.46-9.28 is installed
  • OR openldap2-devel-static-2.4.46-9.28 is installed
  • OR openldap2-ppolicy-check-password-1.2-9.28 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-Jinja2-2.7.3-15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-Django-1.8.19-3.4 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • perl-5.18.2-12.20 is installed
  • OR perl-32bit-5.18.2-12.20 is installed
  • OR perl-base-5.18.2-12.20 is installed
  • OR perl-doc-5.18.2-12.20 is installed
  • BACK