Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for fwupd (Important) |
Description: |
This update for fwupd fixes the following issues:
- CVE-2020-10759: Fixed a potential PGP signature bypass, which could have led to installation of unsigned firmware (bsc#1172643)
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1012382 1043912 1044189 1046302 1046306 1046307 1046543 1050244 1051510 1054914 1055014 1055117 1058659 1060463 1064232 1065600 1065729 1068032 1069138 1071995 1077761 1077989 1078720 1080157 1082555 1083647 1083663 1084332 1085030 1085042 1085262 1086282 1089663 1090528 1092903 1093389 1094244 1095344 1096748 1097105 1098459 1098822 1099922 1099999 1100000 1100001 1100132 1101557 1101669 1102346 1102870 1102875 1102877 1102879 1102882 1102896 1103363 1103387 1103421 1103948 1103949 1103961 1104172 1104353 1104824 1104967 1105247 1105524 1105536 1105597 1105603 1105672 1105907 1106007 1106016 1106105 1106121 1106170 1106178 1106191 1106229 1106230 1106231 1106233 1106235 1106236 1106237 1106238 1106240 1106291 1106297 1106333 1106369 1106426 1106427 1106464 1106509 1106511 1106594 1106636 1106688 1106697 1106743 1106779 1106800 1106890 1106891 1106892 1106893 1106894 1106896 1106897 1106898 1106899 1106900 1106901 1106902 1106903 1106905 1106906 1106948 1106995 1107008 1107060 1107061 1107065 1107073 1107074 1107078 1107265 1107319 1107320 1107522 1107535 1107689 1107735 1107756 1107870 1107924 1107945 1107966 1108010 1108093 1108243 1108520 1108870 1109269 1109511 1111666 1112178 1113956 1114279 1144333 1148868 1150660 1151927 1152107 1152624 1158095 1158755 1158983 1159058 1161016 1162002 1162063 1163102 1163103 1163104 1163309 1166985 1167104 1168081 1168959 1169194 1169514 1169771 1169795 1170011 1170442 1170592 1170617 1170618 1171078 1171124 1171424 1171529 1171530 1171558 1171673 1171732 1171739 1171743 1171753 1171759 1171835 1171841 1171868 1171904 1172247 1172257 1172344 1172458 1172484 1172537 1172538 1172643 1172686 1172687 1172719 1172759 1172775 1172781 1172782 1172783 1172871 1172872 1172999 1173060 1173074 1173146 1173265 1173280 1173284 1173428 1173514 1173567 1173573 1173659 1173746 1173818 1173820 1173825 1173826 1173833 1173838 1173839 1173845 1173857 1173937 1173999 1174000 1174113 1174115 1174122 1174123 1174186 1174187 1174296 1174321 1174343 1174356 1174409 1174438 1174462 1174543 1176589 920344 CVE-2008-1227 CVE-2009-0035 CVE-2010-4530 CVE-2011-3602 CVE-2012-3355 CVE-2013-1986 CVE-2014-0004 CVE-2014-2524 CVE-2014-6271 CVE-2014-6277 CVE-2014-6278 CVE-2014-7169 CVE-2014-7186 CVE-2014-7187 CVE-2016-7947 CVE-2016-7948 CVE-2018-10938 CVE-2018-10940 CVE-2018-1128 CVE-2018-1129 CVE-2018-12896 CVE-2018-13093 CVE-2018-13094 CVE-2018-13095 CVE-2018-14613 CVE-2018-14617 CVE-2018-16658 CVE-2018-6554 CVE-2018-6555 CVE-2019-14889 CVE-2019-15604 CVE-2019-15605 CVE-2019-15606 CVE-2019-16746 CVE-2019-20810 CVE-2019-20908 CVE-2020-0305 CVE-2020-10759 CVE-2020-10766 CVE-2020-10767 CVE-2020-10768 CVE-2020-10769 CVE-2020-10773 CVE-2020-10781 CVE-2020-12771 CVE-2020-12888 CVE-2020-13974 CVE-2020-14416 CVE-2020-15095 CVE-2020-15103 CVE-2020-15393 CVE-2020-15780 CVE-2020-8252 SUSE-SU-2018:2980-1 SUSE-SU-2020:0130-1 SUSE-SU-2020:0454-1 SUSE-SU-2020:2107-1 SUSE-SU-2020:2829-1
|
Platform(s): | openSUSE Leap 15.0 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Workstation Extension 15 SUSE Linux Enterprise Workstation Extension 15 SP1 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 6-LTSS SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud Crowbar 9
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND libpng16-16-1.6.34-lp150.1 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
libsnmp15-5.4.2.1-8.12.22 is installed
OR libsnmp15-32bit-5.4.2.1-8.12.22 is installed
OR net-snmp-5.4.2.1-8.12.22 is installed
OR perl-SNMP-5.4.2.1-8.12.22 is installed
OR snmp-mibs-5.4.2.1-8.12.22 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
java-1_7_0-openjdk-1.7.0.71-6 is installed
OR java-1_7_0-openjdk-headless-1.7.0.71-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
alsa-1.0.27.2-11 is installed
OR libasound2-1.0.27.2-11 is installed
OR libasound2-32bit-1.0.27.2-11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
bash-4.3-78 is installed
OR bash-doc-4.3-78 is installed
OR bash-lang-4.3-78 is installed
OR libreadline6-6.3-78 is installed
OR libreadline6-32bit-6.3-78 is installed
OR readline-doc-6.3-78 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
libXrandr2-1.5.0-6 is installed
OR libXrandr2-32bit-1.5.0-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
java-1_8_0-openjdk-1.8.0.181-27.26 is installed
OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
AND Package Information
dfu-tool-1.0.9-6.3 is installed
OR fwupd-1.0.9-6.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND Package Information
apache2-2.4.16-5 is installed
OR apache2-doc-2.4.16-5 is installed
OR apache2-example-pages-2.4.16-5 is installed
OR apache2-prefork-2.4.16-5 is installed
OR apache2-utils-2.4.16-5 is installed
OR apache2-worker-2.4.16-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
openvpn-2.3.8-16.17 is installed
OR openvpn-auth-pam-plugin-2.3.8-16.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND chrony-2.3-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
openslp-2.0.0-18.17 is installed
OR openslp-32bit-2.0.0-18.17 is installed
OR openslp-server-2.0.0-18.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
MozillaFirefox-60.3.0-109.50 is installed
OR MozillaFirefox-devel-60.3.0-109.50 is installed
OR MozillaFirefox-translations-common-60.3.0-109.50 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND ucode-intel-20180807-13.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND apache-commons-httpclient-3.1-4 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND Package Information
MozillaFirefox-68.1.0-109.89 is installed
OR MozillaFirefox-branding-SLE-68-32.8 is installed
OR MozillaFirefox-translations-common-68.1.0-109.89 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
libseccomp-2.4.1-11.3 is installed
OR libseccomp2-2.4.1-11.3 is installed
OR libseccomp2-32bit-2.4.1-11.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
kgraft-patch-4_4_162-94_72-default-5-2 is installed
OR kgraft-patch-SLE12-SP3_Update_22-5-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
dovecot22-2.2.31-19.11 is installed
OR dovecot22-backend-mysql-2.2.31-19.11 is installed
OR dovecot22-backend-pgsql-2.2.31-19.11 is installed
OR dovecot22-backend-sqlite-2.2.31-19.11 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND Package Information
ceph-common-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR libcephfs2-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR librados2-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR libradosstriper1-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR librbd1-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR librgw2-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR python-cephfs-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR python-rados-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR python-rbd-12.2.8+git.1536505967.080f2248ff-2.15 is installed
OR python-rgw-12.2.8+git.1536505967.080f2248ff-2.15 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 15-LTSS is installed
AND Package Information
libssh-0.7.5-6.9 is installed
OR libssh-devel-0.7.5-6.9 is installed
OR libssh4-0.7.5-6.9 is installed
OR libssh4-32bit-0.7.5-6.9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server for SAP Applications 15 is installed
AND Package Information
kernel-default-4.12.14-150.55 is installed
OR kernel-default-base-4.12.14-150.55 is installed
OR kernel-default-devel-4.12.14-150.55 is installed
OR kernel-devel-4.12.14-150.55 is installed
OR kernel-docs-4.12.14-150.55 is installed
OR kernel-macros-4.12.14-150.55 is installed
OR kernel-obs-build-4.12.14-150.55 is installed
OR kernel-source-4.12.14-150.55 is installed
OR kernel-syms-4.12.14-150.55 is installed
OR kernel-vanilla-4.12.14-150.55 is installed
OR kernel-vanilla-base-4.12.14-150.55 is installed
OR reiserfs-kmp-default-4.12.14-150.55 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 is installed
AND Package Information
kernel-default-4.12.14-25.19 is installed
OR kernel-default-extra-4.12.14-25.19 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
AND Package Information
kernel-default-4.12.14-197.48 is installed
OR kernel-default-extra-4.12.14-197.48 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND Package Information
openstack-designate-1.0.3~a0~dev10-6 is installed
OR openstack-designate-agent-1.0.3~a0~dev10-6 is installed
OR openstack-designate-api-1.0.3~a0~dev10-6 is installed
OR openstack-designate-central-1.0.3~a0~dev10-6 is installed
OR openstack-designate-doc-1.0.3~a0~dev10-6 is installed
OR openstack-designate-sink-1.0.3~a0~dev10-6 is installed
OR openstack-ironic-4.2.5-6 is installed
OR openstack-ironic-api-4.2.5-6 is installed
OR openstack-ironic-conductor-4.2.5-6 is installed
OR openstack-ironic-doc-4.2.5-6 is installed
OR openstack-neutron-vpn-agent-7.0.5~a0~dev3-6 is installed
OR openstack-neutron-vpnaas-7.0.5~a0~dev3-6 is installed
OR openstack-neutron-vpnaas-doc-7.0.5~a0~dev3-6 is installed
OR openstack-nova-docker-0.0.1~a0~dev238-4 is installed
OR openstack-sahara-3.0.3~a0~dev1-6 is installed
OR openstack-sahara-api-3.0.3~a0~dev1-6 is installed
OR openstack-sahara-doc-3.0.3~a0~dev1-6 is installed
OR openstack-sahara-engine-3.0.3~a0~dev1-6 is installed
OR openstack-tempest-7.0.0-9 is installed
OR openstack-tempest-test-7.0.0-9 is installed
OR openstack-trove-4.0.1~a0~dev19-8 is installed
OR openstack-trove-api-4.0.1~a0~dev19-8 is installed
OR openstack-trove-conductor-4.0.1~a0~dev19-8 is installed
OR openstack-trove-doc-4.0.1~a0~dev19-8 is installed
OR openstack-trove-guestagent-4.0.1~a0~dev19-8 is installed
OR openstack-trove-taskmanager-4.0.1~a0~dev19-8 is installed
OR python-designate-1.0.3~a0~dev10-6 is installed
OR python-ironic-4.2.5-6 is installed
OR python-neutron-vpnaas-7.0.5~a0~dev3-6 is installed
OR python-sahara-3.0.3~a0~dev1-6 is installed
OR python-tempest-7.0.0-9 is installed
OR python-trove-4.0.1~a0~dev19-8 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6-LTSS is installed
AND docker-runc-1.0.0rc5+gitr3562_69663f0bd4b6-1.9 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
cups-1.7.5-20.26 is installed
OR cups-client-1.7.5-20.26 is installed
OR cups-libs-1.7.5-20.26 is installed
OR cups-libs-32bit-1.7.5-20.26 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND Package Information
libmariadb3-3.0.3-3.3 is installed
OR mariadb-10.2.15-4.3 is installed
OR mariadb-client-10.2.15-4.3 is installed
OR mariadb-connector-c-3.0.3-3.3 is installed
OR mariadb-errormessages-10.2.15-4.3 is installed
OR mariadb-galera-10.2.15-4.3 is installed
OR mariadb-tools-10.2.15-4.3 is installed
OR xtrabackup-2.4.10-4.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 9 is installed
AND nodejs6-6.17.0-11.27 is installed
|