Oval Definition:oval:org.opensuse.security:def:53466
Revision Date:2020-12-01Version:1
Title:Security update for nginx (Moderate)
Description:

This update for nginx fixes the following issues:

nginx was updated to 1.16.1 (jsc#ECO-1401)

- Added TLS 1.3 support (jsc#SLE-9295, bsc#1150711) - Replaced obsolete GeoIP module with MaxMinDB-based GeoIP2 (jsc#SLE-11184, bsc#1156202) - Started nginx after network is online (bsc#1155690) - CVE-2019-20372: Fixed an HTTP request smuggling with certain error_page configurations which could have allowed unauthorized web page reads (bsc#1160682).
Family:unixClass:patch
Status:Reference(s):1015351
1024145
1033109
1033111
1033112
1033113
1033118
1033120
1033126
1033127
1033128
1033129
1033131
1038438
1039361
1042804
1042805
1058115
1059809
1059811
1071995
1077001
1150711
1154366
1155690
1156202
1160682
1165629
1165631
1171988
1172428
1173798
1174205
1174757
1175112
1175122
1175128
1175204
1175213
1175515
1175518
1175691
1175992
1176069
889013
921978
949160
960319
968050
976942
976943
977614
977615
977617
981124
983232
983234
983253
983259
983292
983305
983308
983521
983523
983527
983533
983739
983746
983752
983774
983794
983796
983799
983803
984014
984018
984023
984028
984032
984035
984135
984137
984142
984144
984145
984149
984150
984160
984166
984172
984179
984181
984183
984184
984185
984186
984187
984191
984193
984370
984372
984373
984374
984375
984379
984394
984398
984400
984401
984404
984406
984408
984409
984427
984433
984436
985442
985448
985451
985456
985460
986608
986609
CVE-2012-1174
CVE-2012-2673
CVE-2013-4288
CVE-2013-7447
CVE-2014-9805
CVE-2014-9806
CVE-2014-9807
CVE-2014-9808
CVE-2014-9809
CVE-2014-9810
CVE-2014-9811
CVE-2014-9812
CVE-2014-9813
CVE-2014-9814
CVE-2014-9815
CVE-2014-9816
CVE-2014-9817
CVE-2014-9818
CVE-2014-9819
CVE-2014-9820
CVE-2014-9821
CVE-2014-9822
CVE-2014-9823
CVE-2014-9824
CVE-2014-9825
CVE-2014-9826
CVE-2014-9828
CVE-2014-9829
CVE-2014-9830
CVE-2014-9831
CVE-2014-9832
CVE-2014-9833
CVE-2014-9834
CVE-2014-9835
CVE-2014-9836
CVE-2014-9837
CVE-2014-9838
CVE-2014-9839
CVE-2014-9840
CVE-2014-9841
CVE-2014-9842
CVE-2014-9843
CVE-2014-9844
CVE-2014-9845
CVE-2014-9846
CVE-2014-9847
CVE-2014-9848
CVE-2014-9849
CVE-2014-9850
CVE-2014-9851
CVE-2014-9852
CVE-2014-9853
CVE-2014-9854
CVE-2015-1802
CVE-2015-1803
CVE-2015-1804
CVE-2015-7555
CVE-2015-8894
CVE-2015-8895
CVE-2015-8896
CVE-2015-8897
CVE-2015-8898
CVE-2015-8900
CVE-2015-8901
CVE-2015-8902
CVE-2015-8903
CVE-2016-0702
CVE-2016-10156
CVE-2016-10371
CVE-2016-2105
CVE-2016-2106
CVE-2016-2108
CVE-2016-2109
CVE-2016-4562
CVE-2016-4563
CVE-2016-4564
CVE-2016-5687
CVE-2016-5688
CVE-2016-5689
CVE-2016-5690
CVE-2016-5691
CVE-2016-5759
CVE-2016-5841
CVE-2016-5842
CVE-2016-6354
CVE-2016-6855
CVE-2016-7795
CVE-2016-9427
CVE-2017-1000367
CVE-2017-14632
CVE-2017-14633
CVE-2017-2581
CVE-2017-2586
CVE-2017-2587
CVE-2017-6318
CVE-2017-7592
CVE-2017-7593
CVE-2017-7594
CVE-2017-7595
CVE-2017-7596
CVE-2017-7597
CVE-2017-7598
CVE-2017-7599
CVE-2017-7600
CVE-2017-7601
CVE-2017-7602
CVE-2017-9403
CVE-2017-9404
CVE-2018-1000007
CVE-2019-20372
CVE-2020-10135
CVE-2020-14314
CVE-2020-14331
CVE-2020-14356
CVE-2020-14386
CVE-2020-16166
CVE-2020-1749
CVE-2020-24394
SUSE-SU-2015:0702-1
SUSE-SU-2016:0202-1
SUSE-SU-2016:1267-1
SUSE-SU-2016:1784-1
SUSE-SU-2017:1450-1
SUSE-SU-2017:2569-1
SUSE-SU-2018:0015-1
SUSE-SU-2018:0217-1
SUSE-SU-2020:1171-1
SUSE-SU-2020:2610-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • augeas-1.10.1-lp150.1 is installed
  • OR augeas-lenses-1.10.1-lp150.1 is installed
  • OR libaugeas0-1.10.1-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • kernel-debug-4.12.14-lp151.28.4 is installed
  • OR kernel-debug-base-4.12.14-lp151.28.4 is installed
  • OR kernel-debug-devel-4.12.14-lp151.28.4 is installed
  • OR kernel-default-4.12.14-lp151.28.4 is installed
  • OR kernel-default-base-4.12.14-lp151.28.4 is installed
  • OR kernel-default-devel-4.12.14-lp151.28.4 is installed
  • OR kernel-devel-4.12.14-lp151.28.4 is installed
  • OR kernel-docs-4.12.14-lp151.28.4 is installed
  • OR kernel-docs-html-4.12.14-lp151.28.4 is installed
  • OR kernel-kvmsmall-4.12.14-lp151.28.4 is installed
  • OR kernel-kvmsmall-base-4.12.14-lp151.28.4 is installed
  • OR kernel-kvmsmall-devel-4.12.14-lp151.28.4 is installed
  • OR kernel-macros-4.12.14-lp151.28.4 is installed
  • OR kernel-obs-build-4.12.14-lp151.28.4 is installed
  • OR kernel-obs-qa-4.12.14-lp151.28.4 is installed
  • OR kernel-source-4.12.14-lp151.28.4 is installed
  • OR kernel-source-vanilla-4.12.14-lp151.28.4 is installed
  • OR kernel-syms-4.12.14-lp151.28.4 is installed
  • OR kernel-vanilla-4.12.14-lp151.28.4 is installed
  • OR kernel-vanilla-base-4.12.14-lp151.28.4 is installed
  • OR kernel-vanilla-devel-4.12.14-lp151.28.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • ImageMagick-6.4.3.6-7.26 is installed
  • OR libMagick++1-6.4.3.6-7.26 is installed
  • OR libMagickCore1-6.4.3.6-7.26 is installed
  • OR libMagickCore1-32bit-6.4.3.6-7.26 is installed
  • OR libMagickWand1-6.4.3.6-7.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • cups-1.3.9-8.46.52 is installed
  • OR cups-client-1.3.9-8.46.52 is installed
  • OR cups-libs-1.3.9-8.46.52 is installed
  • OR cups-libs-32bit-1.3.9-8.46.52 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • bind-9.9.6P1-0.12 is installed
  • OR bind-libs-9.9.6P1-0.12 is installed
  • OR bind-libs-32bit-9.9.6P1-0.12 is installed
  • OR bind-utils-9.9.6P1-0.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libXfont-1.4.7-4 is installed
  • OR libXfont1-1.4.7-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-30 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-30 is installed
  • OR libMagickCore-6_Q16-1-6.8.8.1-30 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-30 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libtiff5-4.0.8-44.3 is installed
  • OR libtiff5-32bit-4.0.8-44.3 is installed
  • OR tiff-4.0.8-44.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND kdump-0.8.16-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • eog-3.20.4-7 is installed
  • OR eog-lang-3.20.4-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • gnome-shell-3.10.4-40 is installed
  • OR gnome-shell-browser-plugin-3.10.4-40 is installed
  • OR gnome-shell-lang-3.10.4-40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_29-default-7-2 is installed
  • OR kgraft-patch-3_12_69-60_64_29-xen-7-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_12-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND clamav-0.99.2-25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_114-92_67-default-8-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_19-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • MozillaFirefox-60.9.0-109.86 is installed
  • OR MozillaFirefox-devel-60.9.0-109.86 is installed
  • OR MozillaFirefox-translations-common-60.9.0-109.86 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • gv-3.7.4-1 is installed
  • OR wdiff-1.2.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libpcap-1.8.1-10.3 is installed
  • OR libpcap1-1.8.1-10.3 is installed
  • OR tcpdump-4.9.2-14.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • postgresql96-9.6.15-3.29 is installed
  • OR postgresql96-contrib-9.6.15-3.29 is installed
  • OR postgresql96-docs-9.6.15-3.29 is installed
  • OR postgresql96-libs-9.6.15-3.29 is installed
  • OR postgresql96-plperl-9.6.15-3.29 is installed
  • OR postgresql96-plpython-9.6.15-3.29 is installed
  • OR postgresql96-pltcl-9.6.15-3.29 is installed
  • OR postgresql96-server-9.6.15-3.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND binutils-2.32-9.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libsoup-2.62.2-5.7 is installed
  • OR libsoup-2_4-1-2.62.2-5.7 is installed
  • OR libsoup-2_4-1-32bit-2.62.2-5.7 is installed
  • OR libsoup-lang-2.62.2-5.7 is installed
  • OR typelib-1_0-Soup-2_4-2.62.2-5.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • gnutls-3.3.27-3.3 is installed
  • OR libgnutls-openssl27-3.3.27-3.3 is installed
  • OR libgnutls28-3.3.27-3.3 is installed
  • OR libgnutls28-32bit-3.3.27-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND nginx-1.16.1-3.12 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND couchdb-1.6.1-2 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • kernel-default-4.4.121-92.85 is installed
  • OR kernel-default-base-4.4.121-92.85 is installed
  • OR kernel-default-devel-4.4.121-92.85 is installed
  • OR kernel-default-man-4.4.121-92.85 is installed
  • OR kernel-devel-4.4.121-92.85 is installed
  • OR kernel-macros-4.4.121-92.85 is installed
  • OR kernel-source-4.4.121-92.85 is installed
  • OR kernel-syms-4.4.121-92.85 is installed
  • OR kgraft-patch-4_4_121-92_85-default-1-3.5 is installed
  • OR kgraft-patch-SLE12-SP2_Update_23-1-3.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-4.15 is installed
  • OR crowbar-core-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1565280360.01fed6905-3.26 is installed
  • OR crowbar-ha-5.0+git.1562069707.e2de18c-3.20 is installed
  • OR crowbar-openstack-5.0+git.1565270683.ea6e63d87-4.28 is installed
  • OR crowbar-ui-1.2.0+git.1563181545.65360af5-3.9 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20190805-1.20 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20190805-1.20 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-4.6 is installed
  • OR grafana-monasca-ui-drilldown-1.8.1~dev39-3.9 is installed
  • OR openstack-cinder-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-api-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-backup-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-doc-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev7-3.18 is installed
  • OR openstack-cinder-volume-11.2.3~dev7-3.18 is installed
  • OR openstack-glance-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-api-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-doc-15.0.3~dev2-3.9 is installed
  • OR openstack-glance-registry-15.0.3~dev2-3.9 is installed
  • OR openstack-heat-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-doc-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-engine-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev11-3.21 is installed
  • OR openstack-heat-test-9.0.8~dev11-3.21 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR openstack-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR openstack-ironic-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-api-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-conductor-9.1.8~dev7-3.21 is installed
  • OR openstack-ironic-doc-9.1.8~dev7-3.21 is installed
  • OR openstack-keystone-12.0.4~dev2-5.22 is installed
  • OR openstack-keystone-doc-12.0.4~dev2-5.22 is installed
  • OR openstack-manila-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-api-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-data-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-doc-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-scheduler-5.1.1~dev2-3.18 is installed
  • OR openstack-manila-share-5.1.1~dev2-3.18 is installed
  • OR openstack-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR openstack-monasca-api-2.2.2~dev1-3.15 is installed
  • OR openstack-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR openstack-monasca-persister-java-1.7.1~a0~dev2-3.3 is installed
  • OR openstack-murano-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-api-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-doc-4.0.2~dev2-3.9 is installed
  • OR openstack-murano-engine-4.0.2~dev2-3.9 is installed
  • OR openstack-neutron-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-doc-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.12 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev42-3.21 is installed
  • OR openstack-neutron-server-11.0.9~dev42-3.21 is installed
  • OR openstack-nova-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-cells-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-compute-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-conductor-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-console-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-doc-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-placement-api-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-scheduler-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev4-3.26 is installed
  • OR openstack-octavia-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-amphora-agent-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-api-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-health-manager-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-housekeeping-1.0.6~dev2-4.18 is installed
  • OR openstack-octavia-worker-1.0.6~dev2-4.18 is installed
  • OR python-cinder-11.2.3~dev7-3.18 is installed
  • OR python-glance-15.0.3~dev2-3.9 is installed
  • OR python-heat-9.0.8~dev11-3.21 is installed
  • OR python-horizon-plugin-monasca-ui-1.8.1~dev39-3.9 is installed
  • OR python-horizon-plugin-neutron-fwaas-ui-1.0.1~dev9-4.6 is installed
  • OR python-ironic-9.1.8~dev7-3.21 is installed
  • OR python-keystone-12.0.4~dev2-5.22 is installed
  • OR python-manila-5.1.1~dev2-3.18 is installed
  • OR python-monasca-agent-2.2.5~dev5-3.12 is installed
  • OR python-monasca-api-2.2.2~dev1-3.15 is installed
  • OR python-monasca-persister-1.7.1~dev10-3.9 is installed
  • OR python-murano-4.0.2~dev2-3.9 is installed
  • OR python-neutron-11.0.9~dev42-3.21 is installed
  • OR python-neutron-gbp-7.3.1~dev45-3.6 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.12 is installed
  • OR python-nova-16.1.9~dev4-3.26 is installed
  • OR python-octavia-1.0.6~dev2-4.18 is installed
  • OR python-oslo.db-4.25.2-3.6 is installed
  • OR python-osprofiler-1.11.1-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.20-3.3 is installed
  • BACK