Oval Definition:oval:org.opensuse.security:def:5479
Revision Date:2020-12-02Version:1
Title:Security update for Salt (Moderate)
Description:



This update fixes the following issues:

salt:

* - Fix for TypeError in Tornado importer (bsc#1174165) - Require python3-distro only for TW (bsc#1173072) - Various virt backports from 3000.2 - Avoid traceback on debug logging for swarm module (bsc#1172075) - Add publish_batch to ClearFuncs exposed methods - Update to salt version 3000 See release notes: https://docs.saltstack.com/en/latest/topics/releases/3000.html - Zypperpkg: filter patterns that start with dot (bsc#1171906) - Batch mode now also correctly provides return value (bsc#1168340) - Add docker.logout to docker execution module (bsc#1165572) - Testsuite fix - Add option to enable/disable force refresh for zypper - Python3.8 compatibility changes - Prevent sporious 'salt-api' stuck processes when managing SSH minions because of logging deadlock (bsc#1159284) - Avoid segfault from 'salt-api' under certain conditions of heavy load managing SSH minions (bsc#1169604) - Revert broken changes to slspath made on Salt 3000 (saltstack/salt#56341) (bsc#1170104) - Returns a the list of IPs filtered by the optional network list - Fix CVE-2020-11651 and CVE-2020-11652 (bsc#1170595) - Do not require vendored backports-abc (bsc#1170288) - Fix partition.mkpart to work without fstype (bsc#1169800) - Enable building and installation for Fedora - Disable python2 build on Tumbleweed We are removing the python2 interpreter from openSUSE (SLE16). As such disable salt building for python2 there. - More robust remote port detection - Sanitize grains loaded from roster_grains.json cache during 'state.pkg' - Do not make file.recurse state to fail when msgpack 0.5.4 (bsc#1167437) - Build: Buildequire pkgconfig(systemd) instead of systemd pkgconfig(systemd) is provided by systemd, so this is de-facto no change. But inside the Open Build Service (OBS), the same symbol is also provided by systemd-mini, which exists to shorten build-chains by only enabling what other packages need to successfully build - Add new custom SUSE capability for saltutil state module - Fixes status attribute issue in aptpkg test - Make setup.py script not to require setuptools greater than 9.1 - Loop: fix variable names for until_no_eval - Drop conflictive module.run state patch (bsc#1167437) - Update patches after rebase with upstream v3000 tag (bsc#1167437) - Fix some requirements issues depending on Python3 versions - Removes obsolete patch - Fix for low rpm_lowpkg unit test - Add python-singledispatch as dependency for python2-salt - Virt._get_domain: don't raise an exception if there is no VM - Fix for temp folder definition in loader unit test - Adds test for zypper abbreviation fix - Improved storage pool or network handling - Better import cache handline - Make 'salt.ext.tornado.gen' to use 'salt.ext.backports_abc' on Python 2 - Fix regression in service states with reload argument - Fix integration test failure for test_mod_del_repo_multiline_values - Fix for unless requisite when pip is not installed - Fix errors from unit tests due NO_MOCK and NO_MOCK_REASON deprecation - Fix tornado imports and missing _utils after rebasing patches - Removes unresolved merge conflict in yumpkg module - Use full option name instead of undocumented abbreviation for zypper - Requiring python3-distro only for openSUSE/SLE >= 15 and not for Python 2 builds - Avoid possible user escalation upgrading salt-master (bsc#1157465) (CVE-2019-18897) - Fix unit tests failures in test_batch_async tests - Batch Async: Handle exceptions, properly unregister and close instances after running async batching to avoid CPU starvation of the MWorkers (bsc#1162327) - RHEL/CentOS 8 uses platform-python instead of python3 - Loader: invalidate the import cachefor extra modules - Zypperpkg: filter patterns that start with dot (bsc#1171906) - Batch mode now also correctly provides return value (bsc#1168340) - Add docker.logout to docker execution module (bsc#1165572) - Improvements for chroot module - Add option to enable/disable force refresh for zypper - Prevent sporious 'salt-api' stuck processes when managing SSH minions because of logging deadlock (bsc#1159284) - Avoid segfault from 'salt-api' under certain conditions of heavy load managing SSH minions (bsc#1169604)

Family:unixClass:patch
Status:Reference(s):1157465
1159284
1162327
1165572
1167437
1168340
1168994
1169604
1169800
1170104
1170288
1170595
1171906
1172075
1173072
1174165
1175626
1175656
CVE-2008-1227
CVE-2008-1227
CVE-2009-0368
CVE-2009-2624
CVE-2010-0001
CVE-2010-2074
CVE-2010-4523
CVE-2011-0421
CVE-2011-1098
CVE-2011-1154
CVE-2011-1155
CVE-2011-1526
CVE-2011-2485
CVE-2011-4862
CVE-2012-1162
CVE-2012-1163
CVE-2012-4929
CVE-2012-5112
CVE-2012-5133
CVE-2014-1344
CVE-2014-1384
CVE-2014-1385
CVE-2014-1386
CVE-2014-1387
CVE-2014-1388
CVE-2014-1389
CVE-2014-1390
CVE-2015-2330
CVE-2015-2331
CVE-2015-4491
CVE-2015-5198
CVE-2015-5199
CVE-2015-5200
CVE-2015-7236
CVE-2015-7552
CVE-2015-7673
CVE-2015-7674
CVE-2015-8803
CVE-2015-8804
CVE-2015-8805
CVE-2016-6352
CVE-2019-18897
CVE-2020-10713
CVE-2020-11651
CVE-2020-11652
SUSE-SU-2020:1973-1
SUSE-SU-2020:2626-1
Platform(s):openSUSE 13.1
openSUSE 13.1 NonFree
SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise for SAP 12 SP1
SUSE Linux Enterprise for SAP 12 SP2
SUSE Linux Enterprise High Availability 12 SP4
SUSE Linux Enterprise High Performance Computing 12 SP5
SUSE Linux Enterprise Live Patching 12 SP3
SUSE Linux Enterprise Module for Advanced Systems Management 12
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Real Time Extension 12 SP1
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 SP1-LTSS
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2-LTSS
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3-LTSS
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server for VMWare 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP2
SUSE Linux Enterprise Software Development Kit 11 SP4
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Software Development Kit 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Workstation Extension 12
SUSE Linux Enterprise Workstation Extension 12 SP1
SUSE Linux Enterprise Workstation Extension 12 SP2
SUSE OpenStack Cloud 5
Product(s):
Definition Synopsis
  • SUSE Cloud Compute Node for SUSE Linux Enterprise 12 5 is installed
  • AND Package Information
  • conntrack-tools-1.4.2-5.2 is installed
  • OR libnetfilter_cthelper-1.0.0-7.1 is installed
  • OR libnetfilter_cthelper0-1.0.0-7.1 is installed
  • OR libnetfilter_cttimeout-1.0.0-9.1 is installed
  • OR libnetfilter_cttimeout1-1.0.0-9.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND wireshark-1.12.7-0.5.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • xen-4.4.3_02-26.2 is installed
  • OR xen-doc-html-4.4.3_02-26.2 is installed
  • OR xen-kmp-default-4.4.3_02_3.0.101_65-26.2 is installed
  • OR xen-kmp-pae-4.4.3_02_3.0.101_65-26.2 is installed
  • OR xen-libs-4.4.3_02-26.2 is installed
  • OR xen-libs-32bit-4.4.3_02-26.2 is installed
  • OR xen-tools-4.4.3_02-26.2 is installed
  • OR xen-tools-domU-4.4.3_02-26.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libsilc-1_1-2-1.1.10-24 is installed
  • OR libsilcclient-1_1-3-1.1.10-24 is installed
  • OR silc-toolkit-1.1.10-24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • gdk-pixbuf-lang-2.34.0-16 is installed
  • OR gdk-pixbuf-query-loaders-2.34.0-16 is installed
  • OR gdk-pixbuf-query-loaders-32bit-2.34.0-16 is installed
  • OR libgdk_pixbuf-2_0-0-2.34.0-16 is installed
  • OR libgdk_pixbuf-2_0-0-32bit-2.34.0-16 is installed
  • OR typelib-1_0-GdkPixbuf-2_0-2.34.0-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • colord-1.3.3-12 is installed
  • OR colord-gtk-lang-0.1.26-6 is installed
  • OR colord-lang-1.3.3-12 is installed
  • OR libcolord-gtk1-0.1.26-6 is installed
  • OR libcolord2-1.3.3-12 is installed
  • OR libcolord2-32bit-1.3.3-12 is installed
  • OR libcolorhug2-1.3.3-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND argyllcms-1.6.3-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 is installed
  • AND Package Information
  • kgraft-patch-3_12_60-52_54-default-2-2.2 is installed
  • OR kgraft-patch-3_12_60-52_54-xen-2-2.2 is installed
  • OR kgraft-patch-SLE12_Update_15-2-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP1 is installed
  • AND Package Information
  • kgraft-patch-3_12_69-60_64_35-default-4-2.1 is installed
  • OR kgraft-patch-3_12_69-60_64_35-xen-4-2.1 is installed
  • OR kgraft-patch-SLE12-SP1_Update_14-4-2.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise for SAP 12 SP2 is installed
  • AND cryptctl-1.2.6-5.3.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 12 SP4 is installed
  • AND Package Information
  • libpacemaker3-1.1.19+20180928.0d2680780-1 is installed
  • OR pacemaker-1.1.19+20180928.0d2680780-1 is installed
  • OR pacemaker-cli-1.1.19+20180928.0d2680780-1 is installed
  • OR pacemaker-cts-1.1.19+20180928.0d2680780-1 is installed
  • OR pacemaker-remote-1.1.19+20180928.0d2680780-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
  • AND Package Information
  • guestfs-data-1.32.4-21.3 is installed
  • OR guestfs-tools-1.32.4-21.3 is installed
  • OR guestfsd-1.32.4-21.3 is installed
  • OR libguestfs0-1.32.4-21.3 is installed
  • OR perl-Sys-Guestfs-1.32.4-21.3 is installed
  • OR python-libguestfs-1.32.4-21.3 is installed
  • OR virt-p2v-1.32.4-21.3 is installed
  • OR virt-v2v-1.32.4-21.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Live Patching 12 SP3 is installed
  • AND Package Information
  • kgraft-patch-4_4_114-94_11-default-1-4.3 is installed
  • OR kgraft-patch-SLE12-SP3_Update_8-1-4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Advanced Systems Management 12 is installed
  • AND python-pycrypto-2.6.1-10.3.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Containers 12 is installed
  • AND Package Information
  • ruby2.1-rubygem-rack-1_4-1.4.5-8.10 is installed
  • OR rubygem-rack-1_4-1.4.5-8.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 12 is installed
  • AND Package Information
  • java-1_6_0-ibm-1.6.0_sr16.2-8.1 is installed
  • OR java-1_6_0-ibm-fonts-1.6.0_sr16.2-8.1 is installed
  • OR java-1_6_0-ibm-jdbc-1.6.0_sr16.2-8.1 is installed
  • OR java-1_6_0-ibm-plugin-1.6.0_sr16.2-8.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Public Cloud 12 is installed
  • AND Package Information
  • kernel-ec2-3.12.39-47.1 is installed
  • OR kernel-ec2-devel-3.12.39-47.1 is installed
  • OR kernel-ec2-extra-3.12.39-47.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 12 is installed
  • AND Package Information
  • libpython3_4m1_0-3.4.1-2 is installed
  • OR python3-base-3.4.1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Real Time Extension 12 SP1 is installed
  • AND Package Information
  • kernel-compute-3.12.61-60.18.1 is installed
  • OR kernel-compute-base-3.12.61-60.18.1 is installed
  • OR kernel-compute-devel-3.12.61-60.18.1 is installed
  • OR kernel-compute_debug-3.12.61-60.18.1 is installed
  • OR kernel-compute_debug-devel-3.12.61-60.18.1 is installed
  • OR kernel-devel-rt-3.12.61-60.18.1 is installed
  • OR kernel-rt-3.12.61-60.18.1 is installed
  • OR kernel-rt-base-3.12.61-60.18.1 is installed
  • OR kernel-rt-devel-3.12.61-60.18.1 is installed
  • OR kernel-rt_debug-3.12.61-60.18.1 is installed
  • OR kernel-rt_debug-devel-3.12.61-60.18.1 is installed
  • OR kernel-source-rt-3.12.61-60.18.1 is installed
  • OR kernel-syms-rt-3.12.61-60.18.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND websphere-as_ce-2.1.1.2-2.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP1-LTSS is installed
  • AND Package Information
  • xen-4.0.3_21548_10-0.5.1 is installed
  • OR xen-doc-html-4.0.3_21548_10-0.5.1 is installed
  • OR xen-doc-pdf-4.0.3_21548_10-0.5.1 is installed
  • OR xen-kmp-default-4.0.3_21548_10_2.6.32.59_0.7-0.5.1 is installed
  • OR xen-kmp-pae-4.0.3_21548_10_2.6.32.59_0.7-0.5.1 is installed
  • OR xen-kmp-trace-4.0.3_21548_10_2.6.32.59_0.7-0.5.1 is installed
  • OR xen-libs-4.0.3_21548_10-0.5.1 is installed
  • OR xen-tools-4.0.3_21548_10-0.5.1 is installed
  • OR xen-tools-domU-4.0.3_21548_10-0.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • AND kvm-0.15.1-0.17.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • OpenEXR-1.6.1-83.17.1 is installed
  • OR OpenEXR-32bit-1.6.1-83.17.1 is installed
  • OR OpenEXR-x86-1.6.1-83.17.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND Package Information
  • Mesa-9.0.3-0.28.29.2 is installed
  • OR Mesa-32bit-9.0.3-0.28.29.2 is installed
  • OR Mesa-x86-9.0.3-0.28.29.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 is installed
  • AND Package Information
  • accountsservice-0.6.35-1 is installed
  • OR accountsservice-lang-0.6.35-1 is installed
  • OR libaccountsservice0-0.6.35-1 is installed
  • OR typelib-1_0-AccountsService-1_0-0.6.35-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • accountsservice-0.6.35-3 is installed
  • OR accountsservice-lang-0.6.35-3 is installed
  • OR libaccountsservice0-0.6.35-3 is installed
  • OR typelib-1_0-AccountsService-1_0-0.6.35-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libarchive-3.1.2-25.1 is installed
  • OR libarchive13-3.1.2-25.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND mailman-2.1.17-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND ant-1.9.4-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for Raspberry Pi 12 SP2 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP1 is installed
  • AND clamav-0.99.2-32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • python2-salt-3000-5.78 is installed
  • OR python3-salt-3000-5.78 is installed
  • OR salt-3000-5.78 is installed
  • OR salt-api-3000-5.78 is installed
  • OR salt-bash-completion-3000-5.78 is installed
  • OR salt-cloud-3000-5.78 is installed
  • OR salt-doc-3000-5.78 is installed
  • OR salt-fish-completion-3000-5.78 is installed
  • OR salt-master-3000-5.78 is installed
  • OR salt-minion-3000-5.78 is installed
  • OR salt-proxy-3000-5.78 is installed
  • OR salt-ssh-3000-5.78 is installed
  • OR salt-standalone-formulas-configuration-3000-5.78 is installed
  • OR salt-syndic-3000-5.78 is installed
  • OR salt-zsh-completion-3000-5.78 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP2 is installed
  • AND Package Information
  • mozilla-nspr-devel-4.9.2-0.6.1 is installed
  • OR mozilla-nss-devel-3.13.6-0.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND derby-10.3.1.4-1.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 is installed
  • AND MozillaFirefox-devel-31.1.0esr-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP3 is installed
  • AND libotr-devel-4.0.0-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-71.85 is installed
  • OR ImageMagick-devel-6.8.8.1-71.85 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-71.85 is installed
  • OR libMagick++-devel-6.8.8.1-71.85 is installed
  • OR perl-PerlMagick-6.8.8.1-71.85 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-5 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-5 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP1 is installed
  • AND cyrus-sasl-digestmd5-32bit-2.1.26-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 12 SP2 is installed
  • AND Package Information
  • libpcrecpp0-8.39-7.1 is installed
  • OR libpcrecpp0-32bit-8.39-7.1 is installed
  • OR pcre-8.39-7.1 is installed
  • BACK