Oval Definition:oval:org.opensuse.security:def:54745
Revision Date:2021-01-27Version:1
Title:Security update for sudo (Important)
Description:

This update for sudo fixes the following issues:

- A Heap-based buffer overflow in sudo could be exploited to allow a user to gain root privileges [bsc#1181090,CVE-2021-3156] - It was possible for a user to test for the existence of a directory due to a Race Condition in `sudoedit` [bsc#1180684,CVE-2021-23239]
Family:unixClass:patch
Status:Reference(s):1009966
1010829
1013659
1013678
1013680
1027593
1033783
1044417
1045341
1047044
1047898
1050120
1050606
1051446
1052468
1052550
1052710
1052720
1052731
1052732
1055065
1055323
1055434
1055855
1056248
1056249
1056251
1058640
1059751
1060427
1063008
1063269
1074123
1074969
1074973
1074975
1081556
1133114
1133145
1149495
1149496
1180684
1181090
779700
872796
910252
910253
910457
910458
913650
913651
917152
918595
935979
954447
963520
963632
963635
963731
996511
CVE-2011-1526
CVE-2011-4862
CVE-2012-4405
CVE-2014-0595
CVE-2014-5353
CVE-2014-5354
CVE-2014-5355
CVE-2014-7204
CVE-2014-8116
CVE-2014-8117
CVE-2014-9620
CVE-2014-9621
CVE-2014-9653
CVE-2016-1930
CVE-2016-1935
CVE-2016-1938
CVE-2016-9445
CVE-2016-9446
CVE-2016-9809
CVE-2016-9812
CVE-2016-9813
CVE-2017-10800
CVE-2017-11141
CVE-2017-11529
CVE-2017-11644
CVE-2017-11724
CVE-2017-12133
CVE-2017-12434
CVE-2017-12564
CVE-2017-12667
CVE-2017-12670
CVE-2017-12672
CVE-2017-12675
CVE-2017-13060
CVE-2017-13146
CVE-2017-13648
CVE-2017-13658
CVE-2017-13765
CVE-2017-13766
CVE-2017-13767
CVE-2017-14326
CVE-2017-14533
CVE-2017-14746
CVE-2017-15275
CVE-2017-17881
CVE-2017-18022
CVE-2017-7467
CVE-2017-9617
CVE-2017-9766
CVE-2018-5246
CVE-2018-5247
CVE-2019-11365
CVE-2019-11366
CVE-2019-5481
CVE-2019-5482
CVE-2021-23239
CVE-2021-3156
SUSE-SU-2015:1282-1
SUSE-SU-2015:1444-1
SUSE-SU-2016:0334-1
SUSE-SU-2016:3297-1
SUSE-SU-2017:1092-1
SUSE-SU-2017:2555-1
SUSE-SU-2017:3048-1
SUSE-SU-2017:3086-1
SUSE-SU-2018:0130-1
SUSE-SU-2018:0655-1
SUSE-SU-2019:1091-1
SUSE-SU-2019:2381-1
SUSE-SU-2021:0232-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND cups-filters-1.20.3-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • chromedriver-75.0.3770.80-lp151.2.6 is installed
  • OR chromium-75.0.3770.80-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • ghostscript-fonts-other-8.62-32.34 is installed
  • OR ghostscript-fonts-rus-8.62-32.34 is installed
  • OR ghostscript-fonts-std-8.62-32.34 is installed
  • OR ghostscript-library-8.62-32.34 is installed
  • OR ghostscript-omni-8.62-32.34 is installed
  • OR ghostscript-x11-8.62-32.34 is installed
  • OR libgimpprint-4.2.7-32.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • novell-qtgui-3.0.0-0.20 is installed
  • OR novell-qtgui-cli-3.0.0-0.20 is installed
  • OR novell-ui-base-3.0.0-0.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • krb5-1.6.3-133.49.68 is installed
  • OR krb5-32bit-1.6.3-133.49.68 is installed
  • OR krb5-client-1.6.3-133.49.68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • gstreamer-plugins-bad-1.2.4-3.4 is installed
  • OR libgstegl-1_0-0-1.2.4-3.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND ctags-5.8-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND atftp-0.7.0-160.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libdcerpc-binding0-4.2.4-4 is installed
  • OR libdcerpc-binding0-32bit-4.2.4-4 is installed
  • OR libdcerpc0-4.2.4-4 is installed
  • OR libdcerpc0-32bit-4.2.4-4 is installed
  • OR libgensec0-4.2.4-4 is installed
  • OR libgensec0-32bit-4.2.4-4 is installed
  • OR libndr-krb5pac0-4.2.4-4 is installed
  • OR libndr-krb5pac0-32bit-4.2.4-4 is installed
  • OR libndr-nbt0-4.2.4-4 is installed
  • OR libndr-nbt0-32bit-4.2.4-4 is installed
  • OR libndr-standard0-4.2.4-4 is installed
  • OR libndr-standard0-32bit-4.2.4-4 is installed
  • OR libndr0-4.2.4-4 is installed
  • OR libndr0-32bit-4.2.4-4 is installed
  • OR libnetapi0-4.2.4-4 is installed
  • OR libnetapi0-32bit-4.2.4-4 is installed
  • OR libregistry0-4.2.4-4 is installed
  • OR libsamba-credentials0-4.2.4-4 is installed
  • OR libsamba-credentials0-32bit-4.2.4-4 is installed
  • OR libsamba-hostconfig0-4.2.4-4 is installed
  • OR libsamba-hostconfig0-32bit-4.2.4-4 is installed
  • OR libsamba-passdb0-4.2.4-4 is installed
  • OR libsamba-passdb0-32bit-4.2.4-4 is installed
  • OR libsamba-util0-4.2.4-4 is installed
  • OR libsamba-util0-32bit-4.2.4-4 is installed
  • OR libsamdb0-4.2.4-4 is installed
  • OR libsamdb0-32bit-4.2.4-4 is installed
  • OR libsmbclient-raw0-4.2.4-4 is installed
  • OR libsmbclient-raw0-32bit-4.2.4-4 is installed
  • OR libsmbclient0-4.2.4-4 is installed
  • OR libsmbclient0-32bit-4.2.4-4 is installed
  • OR libsmbconf0-4.2.4-4 is installed
  • OR libsmbconf0-32bit-4.2.4-4 is installed
  • OR libsmbldap0-4.2.4-4 is installed
  • OR libsmbldap0-32bit-4.2.4-4 is installed
  • OR libtevent-util0-4.2.4-4 is installed
  • OR libtevent-util0-32bit-4.2.4-4 is installed
  • OR libwbclient0-4.2.4-4 is installed
  • OR libwbclient0-32bit-4.2.4-4 is installed
  • OR samba-4.2.4-4 is installed
  • OR samba-32bit-4.2.4-4 is installed
  • OR samba-client-4.2.4-4 is installed
  • OR samba-client-32bit-4.2.4-4 is installed
  • OR samba-doc-4.2.4-4 is installed
  • OR samba-libs-4.2.4-4 is installed
  • OR samba-libs-32bit-4.2.4-4 is installed
  • OR samba-winbind-4.2.4-4 is installed
  • OR samba-winbind-32bit-4.2.4-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_67-60_64_24-default-7-2 is installed
  • OR kgraft-patch-3_12_67-60_64_24-xen-7-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_11-7-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • bash-4.3-78 is installed
  • OR bash-doc-4.3-78 is installed
  • OR libreadline6-6.3-78 is installed
  • OR libreadline6-32bit-6.3-78 is installed
  • OR readline-doc-6.3-78 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.30-38.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_90-92_50-default-12-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_15-12-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND sudo-1.8.10p3-10.29.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND opensc-0.13.0-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • postgresql96-9.6.17-3.33 is installed
  • OR postgresql96-contrib-9.6.17-3.33 is installed
  • OR postgresql96-docs-9.6.17-3.33 is installed
  • OR postgresql96-libs-9.6.17-3.33 is installed
  • OR postgresql96-plperl-9.6.17-3.33 is installed
  • OR postgresql96-plpython-9.6.17-3.33 is installed
  • OR postgresql96-pltcl-9.6.17-3.33 is installed
  • OR postgresql96-server-9.6.17-3.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_103-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_176-94_88-default-8-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_24-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libxml2-2.9.4-46.20 is installed
  • OR libxml2-2-2.9.4-46.20 is installed
  • OR libxml2-2-32bit-2.9.4-46.20 is installed
  • OR libxml2-doc-2.9.4-46.20 is installed
  • OR libxml2-tools-2.9.4-46.20 is installed
  • OR python-libxml2-2.9.4-46.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • audiofile-0.3.6-10 is installed
  • OR libaudiofile1-0.3.6-10 is installed
  • OR libaudiofile1-32bit-0.3.6-10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND ucode-intel-20180312-13.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • xen-4.7.6_06-43.51 is installed
  • OR xen-doc-html-4.7.6_06-43.51 is installed
  • OR xen-libs-4.7.6_06-43.51 is installed
  • OR xen-libs-32bit-4.7.6_06-43.51 is installed
  • OR xen-tools-4.7.6_06-43.51 is installed
  • OR xen-tools-domU-4.7.6_06-43.51 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND python-Django-1.11.23-3.12 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • BACK