Revision Date: | 2020-12-01 | Version: | 1 |
Title: | Security update for salt (Moderate) |
Description: |
This update for salt fixes the following issues:
- Avoid possible user escalation upgrading salt-master (bsc#1157465) (CVE-2019-18897) - Fix unit tests failures in test_batch_async tests - Batch Async: Handle exceptions, properly unregister and close instances after running async batching to avoid CPU starvation of the MWorkers (bsc#1162327) - RHEL/CentOS 8 uses platform-python instead of python3 - New configuration option for selection of grains in the minion start event. - Fix 'os_family' grain for Astra Linux Common Edition - Fix for salt-api NET API where unauthenticated attacker could run arbitrary code (CVE-2019-17361) (bsc#1162504) - Adds disabled parameter to mod_repo in aptpkg module Move token with atomic operation Bad API token files get deleted (bsc#1160931) - Support for Btrfs and XFS in parted and mkfs added - Adds list_downloaded for apt Module to enable pre-downloading support Adds virt.(pool|network)_get_xml functions - Various libvirt updates: * Add virt.pool_capabilities function * virt.pool_running improvements * Add virt.pool_deleted state * virt.network_define allow adding IP configuration - virt: adding kernel boot parameters to libvirt xml - Fix to scheduler when data['run'] does not exist (bsc#1159118) - Fix virt states to not fail on VMs already stopped - Fix applying of attributes for returner rawfile_json (bsc#1158940) - xfs: do not fail if type is not present (bsc#1153611) - Fix errors when running virt.get_hypervisor function - Align virt.full_info fixes with upstream Salt - Fix for log checking in x509 test - Read repo info without using interpolation (bsc#1135656) - Limiting M2Crypto to >= SLE15 - Replacing pycrypto with M2Crypto (bsc#1165425)
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1001066 1007245 1022805 1024014 1024017 1024034 1024076 1024079 1126088 1132666 1135656 1136035 1153611 1157465 1158940 1159118 1160931 1162327 1162504 1165425 892403 910252 910253 912014 912015 912018 912293 912294 912296 CVE-2004-0801 CVE-2006-4197 CVE-2010-4267 CVE-2011-1709 CVE-2011-2697 CVE-2011-2722 CVE-2013-1988 CVE-2013-4325 CVE-2013-6402 CVE-2013-6427 CVE-2014-0224 CVE-2014-3467 CVE-2014-3468 CVE-2014-3469 CVE-2014-3570 CVE-2014-3571 CVE-2014-3572 CVE-2014-4607 CVE-2014-8104 CVE-2014-8116 CVE-2014-8117 CVE-2014-8275 CVE-2014-8767 CVE-2014-8768 CVE-2014-8769 CVE-2014-9140 CVE-2015-0204 CVE-2015-0205 CVE-2015-0261 CVE-2015-2153 CVE-2015-2154 CVE-2015-2155 CVE-2015-2806 CVE-2015-3622 CVE-2016-10198 CVE-2016-10199 CVE-2016-2399 CVE-2016-4008 CVE-2016-6329 CVE-2016-6823 CVE-2016-8862 CVE-2017-12166 CVE-2017-5837 CVE-2017-5840 CVE-2017-5844 CVE-2017-7478 CVE-2017-7479 CVE-2017-7508 CVE-2017-7520 CVE-2017-7521 CVE-2019-17361 CVE-2019-18897 CVE-2019-2614 CVE-2019-2627 CVE-2019-2628 SUSE-SU-2015:0305-1 SUSE-SU-2016:2952-1 SUSE-SU-2017:0610-1 SUSE-SU-2017:1004-1 SUSE-SU-2017:1012-1 SUSE-SU-2019:2020-1 SUSE-SU-2020:0684-1
|
Platform(s): | openSUSE Leap 15.0 openSUSE Leap 15.1 SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Desktop 11 SP3 SUSE Linux Enterprise Desktop 11 SP4 SUSE Linux Enterprise Desktop 12 SUSE Linux Enterprise Desktop 12 SP1 SUSE Linux Enterprise Desktop 12 SP2 SUSE Linux Enterprise Desktop 12 SP3 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Module for Python2 packages 15 SP1 SUSE Linux Enterprise Module for Server Applications 15 SUSE Linux Enterprise Server 12 SP1 SUSE Linux Enterprise Server 12 SP1-LTSS SUSE Linux Enterprise Server 12 SP2 SUSE Linux Enterprise Server 12 SP2-BCL SUSE Linux Enterprise Server 12 SP2-ESPOS SUSE Linux Enterprise Server 12 SP2-LTSS SUSE Linux Enterprise Server 12 SP3 SUSE Linux Enterprise Server 12 SP3-BCL SUSE Linux Enterprise Server 12 SP3-ESPOS SUSE Linux Enterprise Server 12 SP3-LTSS SUSE Linux Enterprise Server 12 SP3-TERADATA SUSE Linux Enterprise Server 12 SP4 SUSE OpenStack Cloud 6 SUSE OpenStack Cloud 7 SUSE OpenStack Cloud 8 SUSE OpenStack Cloud 9 SUSE OpenStack Cloud Crowbar 8
| Product(s): | |
Definition Synopsis |
openSUSE Leap 15.0 is installed AND Package Information
grep-3.1-lp150.2 is installed
OR grep-lang-3.1-lp150.2 is installed
|
Definition Synopsis |
openSUSE Leap 15.1 is installed
AND Package Information
libnghttp2-14-1.39.2-lp151.3.3 is installed
OR libnghttp2-14-32bit-1.39.2-lp151.3.3 is installed
OR libnghttp2-devel-1.39.2-lp151.3.3 is installed
OR libnghttp2_asio-devel-1.39.2-lp151.3.3 is installed
OR libnghttp2_asio1-1.39.2-lp151.3.3 is installed
OR libnghttp2_asio1-32bit-1.39.2-lp151.3.3 is installed
OR nghttp2-1.39.2-lp151.3.3 is installed
OR nghttp2-python-1.39.2-lp151.3.3 is installed
OR python3-nghttp2-1.39.2-lp151.3.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND Package Information
gtk2-2.18.9-0.23 is installed
OR gtk2-32bit-2.18.9-0.23 is installed
OR gtk2-devel-2.18.9-0.23 is installed
OR gtk2-lang-2.18.9-0.23 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP3 is installed
AND Package Information
MozillaFirefox-24.6.0esr-0.8 is installed
OR MozillaFirefox-branding-SLED-24-0.7 is installed
OR MozillaFirefox-translations-24.6.0esr-0.8 is installed
OR libfreebl3-3.16.1-0.8 is installed
OR libfreebl3-32bit-3.16.1-0.8 is installed
OR libsoftokn3-3.16.1-0.8 is installed
OR libsoftokn3-32bit-3.16.1-0.8 is installed
OR mozilla-nspr-4.10.6-0.3 is installed
OR mozilla-nspr-32bit-4.10.6-0.3 is installed
OR mozilla-nss-3.16.1-0.8 is installed
OR mozilla-nss-32bit-3.16.1-0.8 is installed
OR mozilla-nss-tools-3.16.1-0.8 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 11 SP4 is installed
AND libwmf-0.2.8.4-206.29.29 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 is installed
AND Package Information
file-5.19-9 is installed
OR file-magic-5.19-9 is installed
OR libmagic1-5.19-9 is installed
OR libmagic1-32bit-5.19-9 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP1 is installed
AND Package Information
ImageMagick-6.8.8.1-47 is installed
OR libMagick++-6_Q16-3-6.8.8.1-47 is installed
OR libMagickCore-6_Q16-1-6.8.8.1-47 is installed
OR libMagickCore-6_Q16-1-32bit-6.8.8.1-47 is installed
OR libMagickWand-6_Q16-1-6.8.8.1-47 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP2 is installed
AND Package Information
hplip-3.14.6-3 is installed
OR hplip-hpijs-3.14.6-3 is installed
OR hplip-sane-3.14.6-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP3 is installed
AND Package Information
gdm-3.10.0.1-52 is installed
OR gdm-lang-3.10.0.1-52 is installed
OR gdmflexiserver-3.10.0.1-52 is installed
OR libgdm1-3.10.0.1-52 is installed
OR typelib-1_0-Gdm-1_0-3.10.0.1-52 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed
AND Package Information
libXRes1-1.0.7-3 is installed
OR libXRes1-32bit-1.0.7-3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Python2 packages 15 SP1 is installed
AND Package Information
python2-salt-2019.2.0-6.24 is installed
OR salt-2019.2.0-6.24 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 is installed
AND Package Information
libmariadb-devel-3.1.2-3.9 is installed
OR libmariadb_plugins-3.1.2-3.9 is installed
OR libmysqld-devel-10.2.25-3.17 is installed
OR libmysqld19-10.2.25-3.17 is installed
OR mariadb-10.2.25-3.17 is installed
OR mariadb-client-10.2.25-3.17 is installed
OR mariadb-connector-c-3.1.2-3.9 is installed
OR mariadb-errormessages-10.2.25-3.17 is installed
OR mariadb-tools-10.2.25-3.17 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1 is installed
AND apache2-mod_jk-1.2.40-5 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP1-LTSS is installed
AND Package Information
kgraft-patch-3_12_74-60_64_63-default-2-2 is installed
OR kgraft-patch-3_12_74-60_64_63-xen-2-2 is installed
OR kgraft-patch-SLE12-SP1_Update_22-2-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2 is installed
AND Package Information
bash-4.3-78 is installed
OR bash-doc-4.3-78 is installed
OR libreadline6-6.3-78 is installed
OR libreadline6-32bit-6.3-78 is installed
OR readline-doc-6.3-78 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-BCL is installed
AND Package Information
perl-5.18.2-12.14 is installed
OR perl-32bit-5.18.2-12.14 is installed
OR perl-base-5.18.2-12.14 is installed
OR perl-doc-5.18.2-12.14 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
AND Package Information
kgraft-patch-4_4_121-92_92-default-4-2 is installed
OR kgraft-patch-SLE12-SP2_Update_24-4-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP2-LTSS is installed
AND Package Information
java-1_8_0-ibm-1.8.0_sr5.20-30.36 is installed
OR java-1_8_0-ibm-alsa-1.8.0_sr5.20-30.36 is installed
OR java-1_8_0-ibm-devel-1.8.0_sr5.20-30.36 is installed
OR java-1_8_0-ibm-plugin-1.8.0_sr5.20-30.36 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3 is installed
AND Package Information
apache-commons-daemon-1.0.15-6 is installed
OR apache-commons-daemon-javadoc-1.0.15-6 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-BCL is installed
AND ucode-intel-20190618-13.47 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
AND Package Information
MozillaFirefox-60.9.0-109.86 is installed
OR MozillaFirefox-translations-common-60.9.0-109.86 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-LTSS is installed
AND Package Information
kgraft-patch-4_4_178-94_91-default-3-2 is installed
OR kgraft-patch-SLE12-SP3_Update_25-3-2 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
AND Package Information
libcroco-0.6.11-12.3 is installed
OR libcroco-0_6-3-0.6.11-12.3 is installed
OR libcroco-0_6-3-32bit-0.6.11-12.3 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND apache-commons-httpclient-3.1-4 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 6 is installed
AND Package Information
ctdb-4.2.4-28.29 is installed
OR libdcerpc-binding0-4.2.4-28.29 is installed
OR libdcerpc-binding0-32bit-4.2.4-28.29 is installed
OR libdcerpc0-4.2.4-28.29 is installed
OR libdcerpc0-32bit-4.2.4-28.29 is installed
OR libgensec0-4.2.4-28.29 is installed
OR libgensec0-32bit-4.2.4-28.29 is installed
OR libndr-krb5pac0-4.2.4-28.29 is installed
OR libndr-krb5pac0-32bit-4.2.4-28.29 is installed
OR libndr-nbt0-4.2.4-28.29 is installed
OR libndr-nbt0-32bit-4.2.4-28.29 is installed
OR libndr-standard0-4.2.4-28.29 is installed
OR libndr-standard0-32bit-4.2.4-28.29 is installed
OR libndr0-4.2.4-28.29 is installed
OR libndr0-32bit-4.2.4-28.29 is installed
OR libnetapi0-4.2.4-28.29 is installed
OR libnetapi0-32bit-4.2.4-28.29 is installed
OR libregistry0-4.2.4-28.29 is installed
OR libsamba-credentials0-4.2.4-28.29 is installed
OR libsamba-credentials0-32bit-4.2.4-28.29 is installed
OR libsamba-hostconfig0-4.2.4-28.29 is installed
OR libsamba-hostconfig0-32bit-4.2.4-28.29 is installed
OR libsamba-passdb0-4.2.4-28.29 is installed
OR libsamba-passdb0-32bit-4.2.4-28.29 is installed
OR libsamba-util0-4.2.4-28.29 is installed
OR libsamba-util0-32bit-4.2.4-28.29 is installed
OR libsamdb0-4.2.4-28.29 is installed
OR libsamdb0-32bit-4.2.4-28.29 is installed
OR libsmbclient-raw0-4.2.4-28.29 is installed
OR libsmbclient-raw0-32bit-4.2.4-28.29 is installed
OR libsmbclient0-4.2.4-28.29 is installed
OR libsmbclient0-32bit-4.2.4-28.29 is installed
OR libsmbconf0-4.2.4-28.29 is installed
OR libsmbconf0-32bit-4.2.4-28.29 is installed
OR libsmbldap0-4.2.4-28.29 is installed
OR libsmbldap0-32bit-4.2.4-28.29 is installed
OR libtevent-util0-4.2.4-28.29 is installed
OR libtevent-util0-32bit-4.2.4-28.29 is installed
OR libwbclient0-4.2.4-28.29 is installed
OR libwbclient0-32bit-4.2.4-28.29 is installed
OR samba-4.2.4-28.29 is installed
OR samba-32bit-4.2.4-28.29 is installed
OR samba-client-4.2.4-28.29 is installed
OR samba-client-32bit-4.2.4-28.29 is installed
OR samba-doc-4.2.4-28.29 is installed
OR samba-libs-4.2.4-28.29 is installed
OR samba-libs-32bit-4.2.4-28.29 is installed
OR samba-winbind-4.2.4-28.29 is installed
OR samba-winbind-32bit-4.2.4-28.29 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 7 is installed
AND Package Information
openstack-dashboard-10.0.6~dev4-4.15 is installed
OR openstack-heat-7.0.7~dev10-5.12 is installed
OR openstack-heat-api-7.0.7~dev10-5.12 is installed
OR openstack-heat-api-cfn-7.0.7~dev10-5.12 is installed
OR openstack-heat-api-cloudwatch-7.0.7~dev10-5.12 is installed
OR openstack-heat-doc-7.0.7~dev10-5.12 is installed
OR openstack-heat-engine-7.0.7~dev10-5.12 is installed
OR openstack-heat-plugin-heat_docker-7.0.7~dev10-5.12 is installed
OR openstack-heat-test-7.0.7~dev10-5.12 is installed
OR openstack-horizon-plugin-designate-ui-3.0.2~dev1-3.6 is installed
OR openstack-keystone-10.0.3~dev9-7.12 is installed
OR openstack-keystone-doc-10.0.3~dev9-7.12 is installed
OR openstack-nova-14.0.11~dev13-4.25 is installed
OR openstack-nova-api-14.0.11~dev13-4.25 is installed
OR openstack-nova-cells-14.0.11~dev13-4.25 is installed
OR openstack-nova-cert-14.0.11~dev13-4.25 is installed
OR openstack-nova-compute-14.0.11~dev13-4.25 is installed
OR openstack-nova-conductor-14.0.11~dev13-4.25 is installed
OR openstack-nova-console-14.0.11~dev13-4.25 is installed
OR openstack-nova-consoleauth-14.0.11~dev13-4.25 is installed
OR openstack-nova-doc-14.0.11~dev13-4.25 is installed
OR openstack-nova-novncproxy-14.0.11~dev13-4.25 is installed
OR openstack-nova-placement-api-14.0.11~dev13-4.25 is installed
OR openstack-nova-scheduler-14.0.11~dev13-4.25 is installed
OR openstack-nova-serialproxy-14.0.11~dev13-4.25 is installed
OR openstack-nova-vncproxy-14.0.11~dev13-4.25 is installed
OR python-heat-7.0.7~dev10-5.12 is installed
OR python-horizon-10.0.6~dev4-4.15 is installed
OR python-horizon-plugin-designate-ui-3.0.2~dev1-3.6 is installed
OR python-keystone-10.0.3~dev9-7.12 is installed
OR python-nova-14.0.11~dev13-4.25 is installed
OR python-os-vif-1.2.1-3.3 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 8 is installed
AND clamav-0.100.3-33.26 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud 9 is installed
AND python-urllib3-1.23-3.6 is installed
|
Definition Synopsis |
SUSE OpenStack Cloud Crowbar 8 is installed
AND Package Information
mariadb-10.2.22-4.11 is installed
OR mariadb-client-10.2.22-4.11 is installed
OR mariadb-errormessages-10.2.22-4.11 is installed
OR mariadb-galera-10.2.22-4.11 is installed
OR mariadb-tools-10.2.22-4.11 is installed
|