Oval Definition:oval:org.opensuse.security:def:56787
Revision Date:2020-12-01Version:1
Title:Security update for wpa_supplicant (Moderate)
Description:

This update for wpa_supplicant fixes the following issues:

This security issue was fixed:

- CVE-2018-14526: Under certain conditions, the integrity of EAPOL-Key messages was not checked, leading to a decryption oracle. An attacker within range of the Access Point and client could have abused the vulnerability to recover sensitive information (bsc#1104205).

This non-security issue was fixed:

- Enabled PWD as EAP method. This allows for password-based authentication, which is easier to setup than most of the other methods, and is used by the Eduroam network (bsc#1109209).
Family:unixClass:patch
Status:Reference(s):1000345
1001151
1002116
1002550
1002557
1003878
1003893
1003894
1004702
1004707
1006536
1006538
1007391
1007450
1007454
1007493
1007494
1007495
1015119
1033447
1033448
1045986
1063671
1064392
1066471
1066472
1073748
1104205
1109209
1109847
1119376
1122191
1129071
1132663
1145092
1159548
1168874
1172037
1173351
1173477
1173691
1173694
1173700
1173701
1173743
1173874
1173875
1173876
1173880
1176409
1176412
900418
949889
950944
953339
953362
953518
954872
955647
956716
957986
958315
958848
961600
961721
962736
962737
962738
962739
963161
964427
973188
973631
974038
975130
975138
975907
976058
976111
978164
978295
978413
979620
979670
980716
980724
981264
981276
982024
982025
982026
982224
982225
982286
982695
982960
983973
983984
984981
985503
986586
988675
988676
990843
990923
996524
998516
999661
CVE-2010-1163
CVE-2010-1646
CVE-2011-0010
CVE-2012-2337
CVE-2013-1775
CVE-2013-1776
CVE-2014-3672
CVE-2014-9680
CVE-2014-9761
CVE-2015-0295
CVE-2015-1858
CVE-2015-1859
CVE-2015-1860
CVE-2015-7547
CVE-2015-8776
CVE-2015-8777
CVE-2015-8778
CVE-2015-8779
CVE-2016-3158
CVE-2016-3159
CVE-2016-3710
CVE-2016-3960
CVE-2016-4001
CVE-2016-4002
CVE-2016-4020
CVE-2016-4037
CVE-2016-4439
CVE-2016-4441
CVE-2016-4453
CVE-2016-4454
CVE-2016-4952
CVE-2016-4962
CVE-2016-4963
CVE-2016-5105
CVE-2016-5106
CVE-2016-5107
CVE-2016-5126
CVE-2016-5238
CVE-2016-5337
CVE-2016-5338
CVE-2016-5403
CVE-2016-6258
CVE-2016-6259
CVE-2016-6351
CVE-2016-7161
CVE-2016-7170
CVE-2016-7421
CVE-2016-7466
CVE-2016-7908
CVE-2016-7909
CVE-2016-8576
CVE-2016-8577
CVE-2016-8578
CVE-2016-8667
CVE-2016-8669
CVE-2016-8745
CVE-2016-8909
CVE-2016-8910
CVE-2016-9101
CVE-2016-9102
CVE-2016-9103
CVE-2016-9104
CVE-2016-9105
CVE-2016-9106
CVE-2017-1000368
CVE-2017-13080
CVE-2017-15649
CVE-2017-18922
CVE-2017-5647
CVE-2017-5648
CVE-2018-14526
CVE-2018-14647
CVE-2018-20060
CVE-2018-21247
CVE-2019-10208
CVE-2019-11236
CVE-2019-16782
CVE-2019-20839
CVE-2019-20840
CVE-2019-5010
CVE-2019-9740
CVE-2020-14392
CVE-2020-14393
CVE-2020-14397
CVE-2020-14398
CVE-2020-14399
CVE-2020-14400
CVE-2020-14401
CVE-2020-14402
CVE-2020-14403
CVE-2020-14404
CVE-2020-6821
CVE-2020-6822
CVE-2020-6825
CVE-2020-6827
CVE-2020-6828
CVE-2020-8161
CVE-2020-8184
SUSE-SU-2016:0471-1
SUSE-SU-2016:2093-1
SUSE-SU-2016:2988-1
SUSE-SU-2017:1382-1
SUSE-SU-2017:1778-1
SUSE-SU-2017:3131-1
SUSE-SU-2019:0482-1
SUSE-SU-2019:1088-1
SUSE-SU-2019:2158-1
SUSE-SU-2019:2399-1
SUSE-SU-2020:0978-1
SUSE-SU-2020:2167-1
SUSE-SU-2020:2661-1
SUSE-SU-2020:2678-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • NetworkManager-1.10.6-lp150.3 is installed
  • OR NetworkManager-lang-1.10.6-lp150.3 is installed
  • OR libnm-glib-vpn1-1.10.6-lp150.3 is installed
  • OR libnm-glib4-1.10.6-lp150.3 is installed
  • OR libnm-util2-1.10.6-lp150.3 is installed
  • OR libnm0-1.10.6-lp150.3 is installed
  • OR typelib-1_0-NM-1_0-1.10.6-lp150.3 is installed
  • OR typelib-1_0-NMClient-1_0-1.10.6-lp150.3 is installed
  • OR typelib-1_0-NetworkManager-1_0-1.10.6-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • chromedriver-75.0.3770.80-lp151.2.6 is installed
  • OR chromium-75.0.3770.80-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND wpa_supplicant-2.6-15.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • xen-4.5.3_08-17 is installed
  • OR xen-doc-html-4.5.3_08-17 is installed
  • OR xen-kmp-default-4.5.3_08_k3.12.59_60.45-17 is installed
  • OR xen-libs-4.5.3_08-17 is installed
  • OR xen-libs-32bit-4.5.3_08-17 is installed
  • OR xen-tools-4.5.3_08-17 is installed
  • OR xen-tools-domU-4.5.3_08-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND sudo-1.8.10p3-2.19 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libQt5Concurrent5-5.6.1-11 is installed
  • OR libQt5Core5-5.6.1-11 is installed
  • OR libQt5DBus5-5.6.1-11 is installed
  • OR libQt5Gui5-5.6.1-11 is installed
  • OR libQt5Network5-5.6.1-11 is installed
  • OR libQt5OpenGL5-5.6.1-11 is installed
  • OR libQt5PrintSupport5-5.6.1-11 is installed
  • OR libQt5Sql5-5.6.1-11 is installed
  • OR libQt5Sql5-mysql-5.6.1-11 is installed
  • OR libQt5Sql5-postgresql-5.6.1-11 is installed
  • OR libQt5Sql5-sqlite-5.6.1-11 is installed
  • OR libQt5Sql5-unixODBC-5.6.1-11 is installed
  • OR libQt5Test5-5.6.1-11 is installed
  • OR libQt5Widgets5-5.6.1-11 is installed
  • OR libQt5Xml5-5.6.1-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • kernel-default-4.4.121-92.92 is installed
  • OR kernel-default-base-4.4.121-92.92 is installed
  • OR kernel-default-devel-4.4.121-92.92 is installed
  • OR kernel-devel-4.4.121-92.92 is installed
  • OR kernel-macros-4.4.121-92.92 is installed
  • OR kernel-source-4.4.121-92.92 is installed
  • OR kernel-syms-4.4.121-92.92 is installed
  • OR kgraft-patch-4_4_121-92_92-default-1-3.7 is installed
  • OR kgraft-patch-SLE12-SP2_Update_24-1-3.7 is installed
  • OR lttng-modules-2.7.1-9.4 is installed
  • OR lttng-modules-kmp-default-2.7.1_k4.4.121_92.92-9.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_120-92_70-default-9-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_20-9-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.20-30.36 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.20-30.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • krb5-1.12.5-39 is installed
  • OR krb5-32bit-1.12.5-39 is installed
  • OR krb5-client-1.12.5-39 is installed
  • OR krb5-doc-1.12.5-39 is installed
  • OR krb5-plugin-kdb-ldap-1.12.5-39 is installed
  • OR krb5-plugin-preauth-otp-1.12.5-39 is installed
  • OR krb5-plugin-preauth-pkinit-1.12.5-39 is installed
  • OR krb5-server-1.12.5-39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libpolkit0-0.113-5.18 is installed
  • OR polkit-0.113-5.18 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-5.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_97-default-9-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_26-9-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • liblua5_2-5.2.4-6 is installed
  • OR liblua5_2-32bit-5.2.4-6 is installed
  • OR lua-5.2.4-6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-urllib3-1.16-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • MozillaFirefox-68.1.0-109.89 is installed
  • OR MozillaFirefox-branding-SLE-68-32.8 is installed
  • OR MozillaFirefox-translations-common-68.1.0-109.89 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Twisted-15.2.1-9.8 is installed
  • BACK