Oval Definition:oval:org.opensuse.security:def:57041
Revision Date:2021-06-28Version:1
Title:Security update for libsolv (Important)
Description:

This update for libsolv fixes the following issues:

Security issues fixed:

- CVE-2019-20387: Fixed heap-buffer-overflow in repodata_schema2id (bsc#1161510) - CVE-2021-3200: testcase_read: error out if repos are added or the system is changed too late (bsc#1186229)

Other issues fixed:

- backport support for blacklisted packages to support ptf packages and retracted patches - fix ruleinfo of complex dependencies returning the wrong origin - fix SOLVER_FLAG_FOCUS_BEST updateing packages without reason - fix add_complex_recommends() selecting conflicted packages in rare cases - fix potential segfault in resolve_jobrules - fix solv_zchunk decoding error if large chunks are used
Family:unixClass:patch
Status:Reference(s):1002626
1003577
1003579
1003580
1005544
1009280
1010457
1010675
1012546
1013882
1013930
1014873
1017497
1053417
1061041
1068386
1070727
1090338
1096740
1100973
1107116
1107121
1111499
1112039
1126140
1126141
1126192
1126195
1126196
1126198
1126201
1127400
1135715
1137001
1143797
1146874
1148931
1149813
1156669
1161510
1186229
CVE-2012-2669
CVE-2012-5532
CVE-2013-4238
CVE-2016-1246
CVE-2016-1249
CVE-2016-1251
CVE-2016-4658
CVE-2016-5542
CVE-2016-5554
CVE-2016-5556
CVE-2016-5568
CVE-2016-5573
CVE-2016-5597
CVE-2016-9318
CVE-2016-9597
CVE-2016-9840
CVE-2016-9841
CVE-2016-9842
CVE-2016-9843
CVE-2017-12636
CVE-2017-14867
CVE-2017-17083
CVE-2017-17084
CVE-2017-17085
CVE-2018-16428
CVE-2018-16429
CVE-2018-18386
CVE-2018-3665
CVE-2018-8007
CVE-2019-12068
CVE-2019-12450
CVE-2019-14378
CVE-2019-15890
CVE-2019-17340
CVE-2019-17341
CVE-2019-17342
CVE-2019-17343
CVE-2019-17344
CVE-2019-17346
CVE-2019-17347
CVE-2019-17348
CVE-2019-20387
CVE-2019-2737
CVE-2019-2739
CVE-2019-2740
CVE-2019-2758
CVE-2019-2805
CVE-2019-2938
CVE-2019-2974
CVE-2019-8595
CVE-2019-8607
CVE-2019-8615
CVE-2019-8644
CVE-2019-8649
CVE-2019-8658
CVE-2019-8666
CVE-2019-8669
CVE-2019-8671
CVE-2019-8672
CVE-2019-8673
CVE-2019-8676
CVE-2019-8677
CVE-2019-8678
CVE-2019-8679
CVE-2019-8680
CVE-2019-8681
CVE-2019-8683
CVE-2019-8684
CVE-2019-8686
CVE-2019-8687
CVE-2019-8688
CVE-2019-8689
CVE-2019-8690
CVE-2021-3200
SUSE-SU-2016:3078-1
SUSE-SU-2017:0004-1
SUSE-SU-2017:0123-1
SUSE-SU-2017:0380-1
SUSE-SU-2017:2747-1
SUSE-SU-2017:3436-1
SUSE-SU-2017:3441-1
SUSE-SU-2018:2088-1
SUSE-SU-2018:2578-1
SUSE-SU-2019:1596-1
SUSE-SU-2019:2345-1
SUSE-SU-2019:2783-1
SUSE-SU-2019:3369-1
SUSE-SU-2021:2180-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND libunwind-1.2.1-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-lp151.6.9 is installed
  • OR php7-7.2.5-lp151.6.9 is installed
  • OR php7-bcmath-7.2.5-lp151.6.9 is installed
  • OR php7-bz2-7.2.5-lp151.6.9 is installed
  • OR php7-calendar-7.2.5-lp151.6.9 is installed
  • OR php7-ctype-7.2.5-lp151.6.9 is installed
  • OR php7-curl-7.2.5-lp151.6.9 is installed
  • OR php7-dba-7.2.5-lp151.6.9 is installed
  • OR php7-devel-7.2.5-lp151.6.9 is installed
  • OR php7-dom-7.2.5-lp151.6.9 is installed
  • OR php7-embed-7.2.5-lp151.6.9 is installed
  • OR php7-enchant-7.2.5-lp151.6.9 is installed
  • OR php7-exif-7.2.5-lp151.6.9 is installed
  • OR php7-fastcgi-7.2.5-lp151.6.9 is installed
  • OR php7-fileinfo-7.2.5-lp151.6.9 is installed
  • OR php7-firebird-7.2.5-lp151.6.9 is installed
  • OR php7-fpm-7.2.5-lp151.6.9 is installed
  • OR php7-ftp-7.2.5-lp151.6.9 is installed
  • OR php7-gd-7.2.5-lp151.6.9 is installed
  • OR php7-gettext-7.2.5-lp151.6.9 is installed
  • OR php7-gmp-7.2.5-lp151.6.9 is installed
  • OR php7-iconv-7.2.5-lp151.6.9 is installed
  • OR php7-intl-7.2.5-lp151.6.9 is installed
  • OR php7-json-7.2.5-lp151.6.9 is installed
  • OR php7-ldap-7.2.5-lp151.6.9 is installed
  • OR php7-mbstring-7.2.5-lp151.6.9 is installed
  • OR php7-mysql-7.2.5-lp151.6.9 is installed
  • OR php7-odbc-7.2.5-lp151.6.9 is installed
  • OR php7-opcache-7.2.5-lp151.6.9 is installed
  • OR php7-openssl-7.2.5-lp151.6.9 is installed
  • OR php7-pcntl-7.2.5-lp151.6.9 is installed
  • OR php7-pdo-7.2.5-lp151.6.9 is installed
  • OR php7-pear-7.2.5-lp151.6.9 is installed
  • OR php7-pear-Archive_Tar-7.2.5-lp151.6.9 is installed
  • OR php7-pgsql-7.2.5-lp151.6.9 is installed
  • OR php7-phar-7.2.5-lp151.6.9 is installed
  • OR php7-posix-7.2.5-lp151.6.9 is installed
  • OR php7-readline-7.2.5-lp151.6.9 is installed
  • OR php7-shmop-7.2.5-lp151.6.9 is installed
  • OR php7-snmp-7.2.5-lp151.6.9 is installed
  • OR php7-soap-7.2.5-lp151.6.9 is installed
  • OR php7-sockets-7.2.5-lp151.6.9 is installed
  • OR php7-sodium-7.2.5-lp151.6.9 is installed
  • OR php7-sqlite-7.2.5-lp151.6.9 is installed
  • OR php7-sysvmsg-7.2.5-lp151.6.9 is installed
  • OR php7-sysvsem-7.2.5-lp151.6.9 is installed
  • OR php7-sysvshm-7.2.5-lp151.6.9 is installed
  • OR php7-tidy-7.2.5-lp151.6.9 is installed
  • OR php7-tokenizer-7.2.5-lp151.6.9 is installed
  • OR php7-wddx-7.2.5-lp151.6.9 is installed
  • OR php7-xmlreader-7.2.5-lp151.6.9 is installed
  • OR php7-xmlrpc-7.2.5-lp151.6.9 is installed
  • OR php7-xmlwriter-7.2.5-lp151.6.9 is installed
  • OR php7-xsl-7.2.5-lp151.6.9 is installed
  • OR php7-zip-7.2.5-lp151.6.9 is installed
  • OR php7-zlib-7.2.5-lp151.6.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.24.4-2.47 is installed
  • OR libwebkit2gtk-4_0-37-2.24.4-2.47 is installed
  • OR libwebkit2gtk3-lang-2.24.4-2.47 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.24.4-2.47 is installed
  • OR typelib-1_0-WebKit2-4_0-2.24.4-2.47 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.24.4-2.47 is installed
  • OR webkit2gtk3-2.24.4-2.47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libz1-1.2.8-6.3 is installed
  • OR libz1-32bit-1.2.8-6.3 is installed
  • OR zlib-1.2.8-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • git-2.12.3-27.9 is installed
  • OR git-core-2.12.3-27.9 is installed
  • OR git-doc-2.12.3-27.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND hyper-v-7-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • glibc-2.22-62.13 is installed
  • OR glibc-32bit-2.22-62.13 is installed
  • OR glibc-devel-2.22-62.13 is installed
  • OR glibc-devel-32bit-2.22-62.13 is installed
  • OR glibc-html-2.22-62.13 is installed
  • OR glibc-i18ndata-2.22-62.13 is installed
  • OR glibc-info-2.22-62.13 is installed
  • OR glibc-locale-2.22-62.13 is installed
  • OR glibc-locale-32bit-2.22-62.13 is installed
  • OR glibc-profile-2.22-62.13 is installed
  • OR glibc-profile-32bit-2.22-62.13 is installed
  • OR nscd-2.22-62.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • gnutls-3.2.15-18.6 is installed
  • OR libgnutls-openssl27-3.2.15-18.6 is installed
  • OR libgnutls28-3.2.15-18.6 is installed
  • OR libgnutls28-32bit-3.2.15-18.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • qemu-2.6.2-41.43 is installed
  • OR qemu-block-curl-2.6.2-41.43 is installed
  • OR qemu-block-rbd-2.6.2-41.43 is installed
  • OR qemu-block-ssh-2.6.2-41.43 is installed
  • OR qemu-guest-agent-2.6.2-41.43 is installed
  • OR qemu-ipxe-1.0.0-41.43 is installed
  • OR qemu-kvm-2.6.2-41.43 is installed
  • OR qemu-lang-2.6.2-41.43 is installed
  • OR qemu-ppc-2.6.2-41.43 is installed
  • OR qemu-s390-2.6.2-41.43 is installed
  • OR qemu-seabios-1.9.1-41.43 is installed
  • OR qemu-sgabios-8-41.43 is installed
  • OR qemu-tools-2.6.2-41.43 is installed
  • OR qemu-vgabios-1.9.1-41.43 is installed
  • OR qemu-x86-2.6.2-41.43 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND busybox-1.21.1-3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.55-38.44 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.55-38.44 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.55-38.44 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.55-38.44 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20200602-13.68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libsolv-devel-0.6.37-2.33.1 is installed
  • OR libsolv-tools-0.6.37-2.33.1 is installed
  • OR libzypp-16.21.4-2.51.1 is installed
  • OR libzypp-devel-16.21.4-2.51.1 is installed
  • OR perl-solv-0.6.37-2.33.1 is installed
  • OR python-solv-0.6.37-2.33.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • dovecot22-2.2.31-19.11 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.11 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.11 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc-binding0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-krb5pac0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-krb5pac0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-nbt0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-nbt0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-standard0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-standard0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libnetapi0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libnetapi0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-credentials0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-credentials0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-errors0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-errors0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-hostconfig0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-hostconfig0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-passdb0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-passdb0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-util0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-util0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamdb0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamdb0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbclient0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbclient0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbconf0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbconf0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbldap0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbldap0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libtevent-util0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libtevent-util0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libwbclient0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libwbclient0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-client-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-client-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-doc-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-libs-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-libs-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-winbind-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-winbind-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND couchdb-1.7.2-2.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ansible-2.4.6.0-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-loofah-2.0.2-3.8 is installed
  • OR rubygem-loofah-2.0.2-3.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • ruby2.1-rubygem-actionview-4_2-4.2.9-9.6 is installed
  • OR rubygem-actionview-4_2-4.2.9-9.6 is installed
  • BACK