Oval Definition:oval:org.opensuse.security:def:56700
Revision Date:2020-12-01Version:1
Title:Security update for puppet (Moderate)
Description:

This update for puppet fixes the following issues:

- CVE-2017-10689: Reset permissions when unpacking tar in PMT. When using minitar, files were unpacked with whatever permissions are in the tarball. This is potentially unsafe, as tarballs can be easily created with weird permissions (bsc#1080288)
Family:unixClass:patch
Status:Reference(s):1000362
1000396
1001299
1012102
1012103
1012104
1013653
1013655
1013663
1039348
1039496
1040039
1045340
1045406
1047184
1053153
1069708
1073748
1076118
1080288
1083488
1085114
1085447
1086247
1109847
1122191
1122292
1122293
1122299
1128158
1130103
1130721
1131233
1131237
1131239
1131241
1131245
1133528
902197
929493
938715
955783
959290
963539
968392
968393
968394
968395
973782
973783
976553
976556
979008
979009
979010
979011
CVE-2009-0758
CVE-2010-2244
CVE-2011-1002
CVE-2014-8080
CVE-2014-8090
CVE-2015-3455
CVE-2015-5400
CVE-2016-0634
CVE-2016-2569
CVE-2016-2570
CVE-2016-2571
CVE-2016-2572
CVE-2016-2776
CVE-2016-3947
CVE-2016-3948
CVE-2016-4051
CVE-2016-4052
CVE-2016-4053
CVE-2016-4054
CVE-2016-4553
CVE-2016-4554
CVE-2016-4555
CVE-2016-4556
CVE-2016-7543
CVE-2016-9634
CVE-2016-9635
CVE-2016-9636
CVE-2016-9807
CVE-2016-9808
CVE-2016-9810
CVE-2017-1000364
CVE-2017-10661
CVE-2017-10689
CVE-2017-13166
CVE-2017-16939
CVE-2017-3145
CVE-2018-1068
CVE-2018-11212
CVE-2018-14647
CVE-2018-1890
CVE-2018-7566
CVE-2019-0196
CVE-2019-0197
CVE-2019-0211
CVE-2019-0217
CVE-2019-0220
CVE-2019-1787
CVE-2019-1788
CVE-2019-1789
CVE-2019-2422
CVE-2019-2449
CVE-2019-3859
CVE-2019-5010
SUSE-SU-2016:2008-1
SUSE-SU-2016:2399-1
SUSE-SU-2016:3288-1
SUSE-SU-2017:1915-1
SUSE-SU-2017:3316-1
SUSE-SU-2018:0303-1
SUSE-SU-2018:0571-1
SUSE-SU-2018:1026-1
SUSE-SU-2018:1398-1
SUSE-SU-2019:0482-1
SUSE-SU-2019:0617-1
SUSE-SU-2019:0878-1
SUSE-SU-2019:0897-1
SUSE-SU-2019:1060-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • NetworkManager-applet-1.8.10-lp150.3 is installed
  • OR NetworkManager-applet-lang-1.8.10-lp150.3 is installed
  • OR NetworkManager-connection-editor-1.8.10-lp150.3 is installed
  • OR libnm-gtk0-1.8.10-lp150.3 is installed
  • OR libnma0-1.8.10-lp150.3 is installed
  • OR nma-data-1.8.10-lp150.3 is installed
  • OR typelib-1_0-NMGtk-1_0-1.8.10-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • mumble-1.2.19-9 is installed
  • OR mumble-32bit-1.2.19-lp151.4.6 is installed
  • OR mumble-server-1.2.19-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND puppet-3.8.5-15.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND squid-3.3.14-20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_45-default-2-2 is installed
  • OR kgraft-patch-3_12_74-60_64_45-xen-2-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_16-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • avahi-0.6.32-30 is installed
  • OR avahi-lang-0.6.32-30 is installed
  • OR avahi-utils-0.6.32-30 is installed
  • OR libavahi-client3-0.6.32-30 is installed
  • OR libavahi-client3-32bit-0.6.32-30 is installed
  • OR libavahi-common3-0.6.32-30 is installed
  • OR libavahi-common3-32bit-0.6.32-30 is installed
  • OR libavahi-core7-0.6.32-30 is installed
  • OR libdns_sd-0.6.32-30 is installed
  • OR libdns_sd-32bit-0.6.32-30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND ucode-intel-20180807-13.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • git-2.12.3-27.14 is installed
  • OR git-core-2.12.3-27.14 is installed
  • OR git-doc-2.12.3-27.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_103-92_53-default-6-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_16-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • bash-4.3-82 is installed
  • OR bash-doc-4.3-82 is installed
  • OR libreadline6-6.3-82 is installed
  • OR libreadline6-32bit-6.3-82 is installed
  • OR readline-doc-6.3-82 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libpcap-1.8.1-10.3 is installed
  • OR libpcap1-1.8.1-10.3 is installed
  • OR tcpdump-4.9.2-14.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kernel-default-4.4.180-94.103 is installed
  • OR kernel-default-base-4.4.180-94.103 is installed
  • OR kernel-default-devel-4.4.180-94.103 is installed
  • OR kernel-devel-4.4.180-94.103 is installed
  • OR kernel-macros-4.4.180-94.103 is installed
  • OR kernel-source-4.4.180-94.103 is installed
  • OR kernel-syms-4.4.180-94.103 is installed
  • OR kgraft-patch-4_4_180-94_103-default-1-4.3 is installed
  • OR kgraft-patch-SLE12-SP3_Update_28-1-4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpcap-1.8.1-10.3 is installed
  • OR libpcap1-1.8.1-10.3 is installed
  • OR tcpdump-4.9.2-14.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.30-38.26 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.30-38.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • bind-9.9.9P1-63.7 is installed
  • OR bind-chrootenv-9.9.9P1-63.7 is installed
  • OR bind-devel-9.9.9P1-63.7 is installed
  • OR bind-doc-9.9.9P1-63.7 is installed
  • OR bind-libs-9.9.9P1-63.7 is installed
  • OR bind-libs-32bit-9.9.9P1-63.7 is installed
  • OR bind-utils-9.9.9P1-63.7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • libssh2-1-1.4.3-20.6 is installed
  • OR libssh2-1-32bit-1.4.3-20.6 is installed
  • OR libssh2_org-1.4.3-20.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • glib2-2.48.2-12.15 is installed
  • OR glib2-lang-2.48.2-12.15 is installed
  • OR glib2-tools-2.48.2-12.15 is installed
  • OR libgio-2_0-0-2.48.2-12.15 is installed
  • OR libgio-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libglib-2_0-0-2.48.2-12.15 is installed
  • OR libglib-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-2.48.2-12.15 is installed
  • OR libgmodule-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-2.48.2-12.15 is installed
  • OR libgobject-2_0-0-32bit-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-2.48.2-12.15 is installed
  • OR libgthread-2_0-0-32bit-2.48.2-12.15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • ardana-ansible-9.0+git.1587034359.a12678b-3.19 is installed
  • OR ardana-barbican-9.0+git.1583953599.cd723bb-3.10 is installed
  • OR ardana-cluster-9.0+git.1585653734.c1fe3b2-3.13 is installed
  • OR ardana-db-9.0+git.1586543314.6b6aa20-3.19 is installed
  • OR ardana-designate-9.0+git.1583445435.4bd1793-3.10 is installed
  • OR ardana-input-model-9.0+git.1584632190.9541c56-3.16 is installed
  • OR ardana-logging-9.0+git.1585929695.f35b591-3.10 is installed
  • OR ardana-monasca-9.0+git.1586769889.d43d736-3.16 is installed
  • OR ardana-mq-9.0+git.1586350749.a463fd2-3.13 is installed
  • OR ardana-neutron-9.0+git.1587667603.507fb50-3.19 is installed
  • OR ardana-octavia-9.0+git.1587486004.8e99c6b-3.16 is installed
  • OR ardana-osconfig-9.0+git.1586546715.dbd07ab-3.16 is installed
  • OR ardana-tempest-9.0+git.1587398456.b31cc4a-3.13 is installed
  • OR ardana-tls-9.0+git.1586301209.c9413b4-3.12 is installed
  • OR memcached-1.5.17-3.3 is installed
  • OR openstack-ceilometer-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-central-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-compute-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-ipmi-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-notification-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-polling-11.1.1~dev5-3.13 is installed
  • OR openstack-cinder-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-api-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-backup-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-scheduler-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-volume-13.0.10~dev9-3.19 is installed
  • OR openstack-designate-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-agent-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-api-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-central-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-producer-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-sink-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-worker-7.0.1~dev25-3.16 is installed
  • OR openstack-heat-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-api-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-api-cfn-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-engine-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-plugin-heat_docker-11.0.3~dev35-3.16 is installed
  • OR openstack-ironic-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-api-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-conductor-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-image-9.0.0-3.6 is installed
  • OR openstack-ironic-image-x86_64-9.0.0-3.6 is installed
  • OR openstack-manila-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-api-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-data-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-scheduler-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-share-7.4.2~dev4-4.21 is installed
  • OR openstack-neutron-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-dhcp-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-ha-tool-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-l3-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-macvtap-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-metadata-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-metering-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-server-13.0.8~dev28-3.22 is installed
  • OR openstack-nova-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-api-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-cells-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-compute-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-conductor-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-console-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-placement-api-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-scheduler-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-octavia-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-amphora-agent-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-amphora-image-0.1.3-7.9 is installed
  • OR openstack-octavia-amphora-image-x86_64-0.1.3-7.9 is installed
  • OR openstack-octavia-api-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-health-manager-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-housekeeping-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-worker-3.2.3~dev2-3.22 is installed
  • OR python-ceilometer-11.1.1~dev5-3.13 is installed
  • OR python-cinder-13.0.10~dev9-3.19 is installed
  • OR python-cinderclient-4.0.3-3.6 is installed
  • OR python-cinderclient-doc-4.0.3-3.6 is installed
  • OR python-designate-7.0.1~dev25-3.16 is installed
  • OR python-glanceclient-2.13.2-3.3 is installed
  • OR python-glanceclient-doc-2.13.2-3.3 is installed
  • OR python-heat-11.0.3~dev35-3.16 is installed
  • OR python-ironic-11.1.5~dev3-3.16 is installed
  • OR python-ironic-lib-2.14.3-3.6 is installed
  • OR python-ironicclient-2.5.4-4.10 is installed
  • OR python-ironicclient-doc-2.5.4-4.10 is installed
  • OR python-keystonemiddleware-5.2.2-17 is installed
  • OR python-manila-7.4.2~dev4-4.21 is installed
  • OR python-manila-tempest-plugin-0.1.0-3.6 is installed
  • OR python-neutron-13.0.8~dev28-3.22 is installed
  • OR python-nova-18.3.1~dev17-3.22 is installed
  • OR python-novaclient-11.0.1-3.3 is installed
  • OR python-novaclient-doc-11.0.1-3.3 is installed
  • OR python-octavia-3.2.3~dev2-3.22 is installed
  • OR python-octaviaclient-1.6.2-3.6 is installed
  • OR python-openstackclient-3.16.3-11 is installed
  • OR python-os-brick-2.5.10-3.9 is installed
  • OR python-os-brick-common-2.5.10-3.9 is installed
  • OR python-oslo.config-6.4.2-3.3 is installed
  • OR python-oslo.config-doc-6.4.2-3.3 is installed
  • OR python-oslo.rootwrap-5.14.2-3.3 is installed
  • OR python-oslo.utils-3.36.5-3.3 is installed
  • OR python-swiftclient-3.6.1-3.3 is installed
  • OR python-swiftclient-doc-3.6.1-3.3 is installed
  • OR python-watcherclient-2.1.1-3.3 is installed
  • OR release-notes-suse-openstack-cloud-9.20200319-3.18 is installed
  • OR venv-openstack-barbican-7.0.1~dev24-3.17 is installed
  • OR venv-openstack-barbican-x86_64-7.0.1~dev24-3.17 is installed
  • OR venv-openstack-cinder-13.0.10~dev9-3.17 is installed
  • OR venv-openstack-cinder-x86_64-13.0.10~dev9-3.17 is installed
  • OR venv-openstack-designate-7.0.1~dev25-3.17 is installed
  • OR venv-openstack-designate-x86_64-7.0.1~dev25-3.17 is installed
  • OR venv-openstack-glance-17.0.1~dev30-3.15 is installed
  • OR venv-openstack-glance-x86_64-17.0.1~dev30-3.15 is installed
  • OR venv-openstack-heat-11.0.3~dev35-3.17 is installed
  • OR venv-openstack-heat-x86_64-11.0.3~dev35-3.17 is installed
  • OR venv-openstack-horizon-14.1.1~dev1-4.16 is installed
  • OR venv-openstack-horizon-x86_64-14.1.1~dev1-4.16 is installed
  • OR venv-openstack-ironic-11.1.5~dev3-4.13 is installed
  • OR venv-openstack-ironic-x86_64-11.1.5~dev3-4.13 is installed
  • OR venv-openstack-keystone-14.1.1~dev36-3.17 is installed
  • OR venv-openstack-keystone-x86_64-14.1.1~dev36-3.17 is installed
  • OR venv-openstack-magnum-7.2.1~dev1-4.17 is installed
  • OR venv-openstack-magnum-x86_64-7.2.1~dev1-4.17 is installed
  • OR venv-openstack-manila-7.4.2~dev4-3.19 is installed
  • OR venv-openstack-manila-x86_64-7.4.2~dev4-3.19 is installed
  • OR venv-openstack-monasca-2.7.1~dev10-3.15 is installed
  • OR venv-openstack-monasca-ceilometer-1.8.2~dev3-3.17 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.8.2~dev3-3.17 is installed
  • OR venv-openstack-monasca-x86_64-2.7.1~dev10-3.15 is installed
  • OR venv-openstack-neutron-13.0.8~dev28-6.17 is installed
  • OR venv-openstack-neutron-x86_64-13.0.8~dev28-6.17 is installed
  • OR venv-openstack-nova-18.3.1~dev17-3.17 is installed
  • OR venv-openstack-nova-x86_64-18.3.1~dev17-3.17 is installed
  • OR venv-openstack-octavia-3.2.3~dev2-4.17 is installed
  • OR venv-openstack-octavia-x86_64-3.2.3~dev2-4.17 is installed
  • OR venv-openstack-sahara-9.0.2~dev15-3.17 is installed
  • OR venv-openstack-sahara-x86_64-9.0.2~dev15-3.17 is installed
  • OR venv-openstack-swift-2.19.2~dev48-2.12 is installed
  • OR venv-openstack-swift-x86_64-2.19.2~dev48-2.12 is installed
  • OR zookeeper-3.4.13-3.3 is installed
  • OR zookeeper-server-3.4.13-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • adns-1.4-103.3 is installed
  • OR libadns1-1.4-103.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • ruby2.1-rubygem-actionview-4_2-4.2.9-9.6 is installed
  • OR rubygem-actionview-4_2-4.2.9-9.6 is installed
  • BACK