Oval Definition:oval:org.opensuse.security:def:5443
Revision Date:2020-12-02Version:1
Title:Security update for libssh (Important)
Description:

This update for libssh fixes the following issues:

- CVE-2019-14889: Fixed an unwanted command execution in scp caused by unsanitized location (bsc#1158095).
Family:unixClass:patch
Status:Reference(s):1125401
1158095
1169740
1171355
1172651
1173334
992038
CVE-2009-3297
CVE-2010-1205
CVE-2010-1205
CVE-2010-2800
CVE-2010-2801
CVE-2011-0541
CVE-2011-2501
CVE-2011-2501
CVE-2011-2690
CVE-2011-2690
CVE-2011-2691
CVE-2011-2691
CVE-2011-2692
CVE-2011-2692
CVE-2011-3026
CVE-2011-3026
CVE-2011-3048
CVE-2011-3048
CVE-2011-3328
CVE-2011-3328
CVE-2011-3389
CVE-2011-3464
CVE-2011-3464
CVE-2011-3848
CVE-2011-3872
CVE-2011-4944
CVE-2012-0037
CVE-2012-0845
CVE-2012-1150
CVE-2012-3386
CVE-2012-3386
CVE-2012-3864
CVE-2012-3865
CVE-2012-3866
CVE-2012-3867
CVE-2013-0221
CVE-2013-0222
CVE-2013-0223
CVE-2013-1752
CVE-2013-1982
CVE-2013-3567
CVE-2013-4238
CVE-2013-4761
CVE-2013-4956
CVE-2014-1545
CVE-2014-2667
CVE-2014-3248
CVE-2014-3253
CVE-2014-4650
CVE-2014-8137
CVE-2014-8138
CVE-2014-8157
CVE-2014-8158
CVE-2014-9029
CVE-2014-9087
CVE-2014-9556
CVE-2015-0247
CVE-2015-1572
CVE-2015-3202
CVE-2015-4041
CVE-2015-4042
CVE-2015-7183
CVE-2015-8126
CVE-2016-4574
CVE-2016-4579
CVE-2018-8956
CVE-2019-14889
CVE-2020-11868
CVE-2020-13817
CVE-2020-15025
SUSE-SU-2020:0130-1
SUSE-SU-2020:1823-1
Platform(s):openSUSE 13.1
openSUSE 13.1 NonFree
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise for SAP 12 SP1
SUSE Linux Enterprise for SAP 12 SP2
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Live Patching 12 SP3
SUSE Linux Enterprise Module for Advanced Systems Management 12
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Toolchain 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Point of Sale 12 SP2
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 SP1-LTSS
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2-LTSS
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3-LTSS
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server for VMWare 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • postgresql91-9.1.19-0.5.1 is installed
  • OR postgresql91-docs-9.1.19-0.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libxml2-2.7.6-0.37.1 is installed
  • OR libxml2-32bit-2.7.6-0.37.1 is installed
  • OR libxml2-python-2.7.6-0.37.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libjasper1-1.900.1-170 is installed
  • OR libjasper1-32bit-1.900.1-170 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • coreutils-8.25-12 is installed
  • OR coreutils-lang-8.25-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • NetworkManager-1.0.12-12 is installed
  • OR NetworkManager-lang-1.0.12-12 is installed
  • OR libnm-glib-vpn1-1.0.12-12 is installed
  • OR libnm-glib4-1.0.12-12 is installed
  • OR libnm-util2-1.0.12-12 is installed
  • OR libnm0-1.0.12-12 is installed
  • OR typelib-1_0-NM-1_0-1.0.12-12 is installed
  • OR typelib-1_0-NMClient-1_0-1.0.12-12 is installed
  • OR typelib-1_0-NetworkManager-1_0-1.0.12-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • bind-utils-9.11.2-1 is installed
  • OR libbind9-160-9.11.2-1 is installed
  • OR libdns169-9.11.2-1 is installed
  • OR libirs160-9.11.2-1 is installed
  • OR libisc166-9.11.2-1 is installed
  • OR libisc166-32bit-9.11.2-1 is installed
  • OR libisccc160-9.11.2-1 is installed
  • OR libisccfg160-9.11.2-1 is installed
  • OR liblwres160-9.11.2-1 is installed
  • OR python-bind-9.11.2-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_55-52_42-default-2-2.2 is installed
  • OR kgraft-patch-3_12_55-52_42-xen-2-2.2 is installed
  • OR kgraft-patch-SLE12_Update_12-2-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP1 is installed
  • AND Package Information
  • libspice-server1-0.12.5-10.1 is installed
  • OR spice-0.12.5-10.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP2 is installed
  • AND Package Information
  • compat-openssl098-0.9.8j-105.1 is installed
  • OR libopenssl0_9_8-0.9.8j-105.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND Package Information
  • elfutils-0.158-7.7 is installed
  • OR libasm1-0.158-7.7 is installed
  • OR libasm1-32bit-0.158-7.7 is installed
  • OR libdw1-0.158-7.7 is installed
  • OR libdw1-32bit-0.158-7.7 is installed
  • OR libebl1-0.158-7.7 is installed
  • OR libebl1-32bit-0.158-7.7 is installed
  • OR libelf-devel-0.158-7.7 is installed
  • OR libelf1-0.158-7.7 is installed
  • OR libelf1-32bit-0.158-7.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 is installed
  • AND Package Information
  • kgraft-patch-4_4_74-92_38-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_13-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 SP3 is installed
  • AND Package Information
  • kgraft-patch-4_4_82-6_6-default-1-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_2-1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Advanced Systems Management 12 is installed
  • AND facter-2.0.2-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Containers 12 is installed
  • AND Package Information
  • sles12-docker-image-1.1.2-20160727 is installed
  • OR sles12sp1-docker-image-1.0.5-20160727 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 12 is installed
  • AND Package Information
  • java-1_6_0-ibm-1.6.0_sr16.1-5 is installed
  • OR java-1_6_0-ibm-fonts-1.6.0_sr16.1-5 is installed
  • OR java-1_6_0-ibm-jdbc-1.6.0_sr16.1-5 is installed
  • OR java-1_6_0-ibm-plugin-1.6.0_sr16.1-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 12 is installed
  • AND Package Information
  • kernel-ec2-3.12.38-44.1 is installed
  • OR kernel-ec2-devel-3.12.38-44.1 is installed
  • OR kernel-ec2-extra-3.12.38-44.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Toolchain 12 is installed
  • AND Package Information
  • cpp5-5.3.1+r233831-9.1 is installed
  • OR gcc5-5.3.1+r233831-9.1 is installed
  • OR gcc5-32bit-5.3.1+r233831-9.1 is installed
  • OR gcc5-ada-5.3.1+r233831-9.1 is installed
  • OR gcc5-ada-32bit-5.3.1+r233831-9.1 is installed
  • OR gcc5-c++-5.3.1+r233831-9.1 is installed
  • OR gcc5-c++-32bit-5.3.1+r233831-9.1 is installed
  • OR gcc5-fortran-5.3.1+r233831-9.1 is installed
  • OR gcc5-fortran-32bit-5.3.1+r233831-9.1 is installed
  • OR gcc5-info-5.3.1+r233831-9.1 is installed
  • OR gcc5-locale-5.3.1+r233831-9.1 is installed
  • OR libada5-5.3.1+r233831-9.1 is installed
  • OR libada5-32bit-5.3.1+r233831-9.1 is installed
  • OR libffi-devel-gcc5-5.3.1+r233831-9.1 is installed
  • OR libffi-devel-gcc5-32bit-5.3.1+r233831-9.1 is installed
  • OR libffi-gcc5-5.3.1+r233831-9.1 is installed
  • OR libstdc++6-devel-gcc5-5.3.1+r233831-9.1 is installed
  • OR libstdc++6-devel-gcc5-32bit-5.3.1+r233831-9.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 12 is installed
  • AND apache2-mod_wsgi-4.4.13-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Point of Sale 12 SP2 is installed
  • AND Package Information
  • salt-2016.11.4-46.7.1 is installed
  • OR salt-minion-2016.11.4-46.7.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND Package Information
  • libvolume_id1-128-13.2.1 is installed
  • OR udev-128-13.2.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP1-LTSS is installed
  • AND Package Information
  • MozillaFirefox-24.8.0esr-0.3.1 is installed
  • OR MozillaFirefox-translations-24.8.0esr-0.3.1 is installed
  • OR libfreebl3-3.16.4-0.3.1 is installed
  • OR libfreebl3-32bit-3.16.4-0.3.1 is installed
  • OR mozilla-nspr-4.10.7-0.3.1 is installed
  • OR mozilla-nspr-32bit-4.10.7-0.3.1 is installed
  • OR mozilla-nss-3.16.4-0.3.1 is installed
  • OR mozilla-nss-32bit-3.16.4-0.3.1 is installed
  • OR mozilla-nss-tools-3.16.4-0.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND Package Information
  • file-4.24-43.19.1 is installed
  • OR file-32bit-4.24-43.19.1 is installed
  • OR file-x86-4.24-43.19.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • Mesa-9.0.3-0.17.1 is installed
  • OR Mesa-32bit-9.0.3-0.17.1 is installed
  • OR Mesa-x86-9.0.3-0.17.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND yast2-2.17.140-1.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • MozillaFirefox-31.1.0esr-1 is installed
  • OR MozillaFirefox-translations-31.1.0esr-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND apache2-mod_jk-1.2.40-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • bind-9.9.9P1-49.1 is installed
  • OR bind-chrootenv-9.9.9P1-49.1 is installed
  • OR bind-doc-9.9.9P1-49.1 is installed
  • OR bind-libs-9.9.9P1-49.1 is installed
  • OR bind-libs-32bit-9.9.9P1-49.1 is installed
  • OR bind-utils-9.9.9P1-49.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libsmi-0.4.8-18 is installed
  • OR libsmi2-0.4.8-18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-38.8 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-38.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • gdk-pixbuf-loader-rsvg-2.40.15-4 is installed
  • OR librsvg-2-2-2.40.15-4 is installed
  • OR rsvg-view-2.40.15-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_60-52_49-default-8-2 is installed
  • OR kgraft-patch-3_12_60-52_49-xen-8-2 is installed
  • OR kgraft-patch-SLE12_Update_14-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
  • AND Package Information
  • kgraft-patch-3_12_67-60_64_21-default-7-3 is installed
  • OR kgraft-patch-3_12_67-60_64_21-xen-7-3 is installed
  • OR kgraft-patch-SLE12-SP1_Update_10-7-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • libssh-0.7.5-6.9 is installed
  • OR libssh-devel-0.7.5-6.9 is installed
  • OR libssh4-0.7.5-6.9 is installed
  • OR libssh4-32bit-0.7.5-6.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND cvs-doc-1.12.12-144.23.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 is installed
  • AND Package Information
  • avahi-compat-howl-devel-0.6.31-20 is installed
  • OR avahi-compat-mDNSResponder-devel-0.6.31-20 is installed
  • OR libavahi-devel-0.6.31-20 is installed
  • OR libhowl0-0.6.31-20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND Package Information
  • libgadu-devel-1.11.4-1 is installed
  • OR libgadu3-1.11.4-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND alsa-devel-1.0.27.2-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 is installed
  • AND cyrus-sasl-digestmd5-32bit-2.1.26-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
  • AND argyllcms-1.6.3-1 is installed
  • BACK