Oval Definition:oval:org.opensuse.security:def:59964
Revision Date:2020-12-01Version:1
Title:Security update for sudo (Important)
Description:

This update for sudo fixes the following issues:

- CVE-2019-14287: Fixed an issue where a user with sudo privileges that allowed them to run commands with an arbitrary uid, could run commands as root, despite being forbidden to do so in sudoers (bsc#1153674).
Family:unixClass:patch
Status:Reference(s):1047356
1058635
1074117
1085449
1086773
1086782
1087027
1087033
1087037
1087039
1087825
1089781
1093311
1123823
1123828
1123832
1126140
1126141
1126192
1126195
1126196
1126197
1126198
1126201
1127400
1130324
1133818
1143797
1144902
1146358
1146359
1146874
1149813
1153674
1155787
1160968
1162972
1164860
1169511
1171352
1172031
1172225
1172277
1173998
1174117
CVE-2009-0946
CVE-2010-2497
CVE-2010-2805
CVE-2010-3053
CVE-2010-3054
CVE-2010-3311
CVE-2010-3814
CVE-2011-0226
CVE-2012-5668
CVE-2012-5669
CVE-2012-5670
CVE-2014-2240
CVE-2014-4607
CVE-2014-9656
CVE-2014-9657
CVE-2014-9658
CVE-2014-9659
CVE-2014-9660
CVE-2014-9661
CVE-2014-9662
CVE-2014-9663
CVE-2014-9664
CVE-2014-9665
CVE-2014-9666
CVE-2014-9667
CVE-2014-9668
CVE-2014-9669
CVE-2014-9670
CVE-2014-9671
CVE-2014-9672
CVE-2014-9673
CVE-2014-9674
CVE-2014-9675
CVE-2017-1000476
CVE-2017-10928
CVE-2017-11450
CVE-2017-14325
CVE-2017-17887
CVE-2017-18250
CVE-2017-18251
CVE-2017-18252
CVE-2017-18254
CVE-2017-2518
CVE-2018-10177
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-1417
CVE-2018-20748
CVE-2018-20749
CVE-2018-20750
CVE-2018-2783
CVE-2018-2790
CVE-2018-2794
CVE-2018-2795
CVE-2018-2796
CVE-2018-2797
CVE-2018-2798
CVE-2018-2799
CVE-2018-2800
CVE-2018-2814
CVE-2018-2825
CVE-2018-2826
CVE-2018-8960
CVE-2018-9018
CVE-2018-9135
CVE-2019-10218
CVE-2019-11091
CVE-2019-12068
CVE-2019-14287
CVE-2019-14378
CVE-2019-15890
CVE-2019-17340
CVE-2019-17341
CVE-2019-17342
CVE-2019-17343
CVE-2019-17344
CVE-2019-17345
CVE-2019-17346
CVE-2019-17347
CVE-2019-17348
CVE-2019-20807
CVE-2019-2949
CVE-2019-8675
CVE-2019-8696
CVE-2019-9924
CVE-2020-13753
CVE-2020-13935
CVE-2020-1935
CVE-2020-2583
CVE-2020-2593
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
CVE-2020-2754
CVE-2020-2755
CVE-2020-2756
CVE-2020-2757
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
CVE-2020-9802
CVE-2020-9803
CVE-2020-9805
CVE-2020-9806
CVE-2020-9807
CVE-2020-9843
CVE-2020-9850
SUSE-SU-2018:1178-1
SUSE-SU-2018:1738-1
SUSE-SU-2019:2769-1
SUSE-SU-2019:2890-1
SUSE-SU-2019:3050-1
SUSE-SU-2019:3057-1
SUSE-SU-2020:1685-1
SUSE-SU-2020:2611-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND libpskc0-2.6.2-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • qemu-3.1.1-lp151.7.3 is installed
  • OR qemu-arm-3.1.1-lp151.7.3 is installed
  • OR qemu-audio-alsa-3.1.1-lp151.7.3 is installed
  • OR qemu-audio-oss-3.1.1-lp151.7.3 is installed
  • OR qemu-audio-pa-3.1.1-lp151.7.3 is installed
  • OR qemu-audio-sdl-3.1.1-lp151.7.3 is installed
  • OR qemu-block-curl-3.1.1-lp151.7.3 is installed
  • OR qemu-block-dmg-3.1.1-lp151.7.3 is installed
  • OR qemu-block-gluster-3.1.1-lp151.7.3 is installed
  • OR qemu-block-iscsi-3.1.1-lp151.7.3 is installed
  • OR qemu-block-nfs-3.1.1-lp151.7.3 is installed
  • OR qemu-block-rbd-3.1.1-lp151.7.3 is installed
  • OR qemu-block-ssh-3.1.1-lp151.7.3 is installed
  • OR qemu-extra-3.1.1-lp151.7.3 is installed
  • OR qemu-guest-agent-3.1.1-lp151.7.3 is installed
  • OR qemu-ipxe-1.0.0+-lp151.7.3 is installed
  • OR qemu-ksm-3.1.1-lp151.7.3 is installed
  • OR qemu-kvm-3.1.1-lp151.7.3 is installed
  • OR qemu-lang-3.1.1-lp151.7.3 is installed
  • OR qemu-linux-user-3.1.1-lp151.7.3 is installed
  • OR qemu-ppc-3.1.1-lp151.7.3 is installed
  • OR qemu-s390-3.1.1-lp151.7.3 is installed
  • OR qemu-seabios-1.12.0-lp151.7.3 is installed
  • OR qemu-sgabios-8-lp151.7.3 is installed
  • OR qemu-testsuite-3.1.1-lp151.7.3 is installed
  • OR qemu-tools-3.1.1-lp151.7.3 is installed
  • OR qemu-ui-curses-3.1.1-lp151.7.3 is installed
  • OR qemu-ui-gtk-3.1.1-lp151.7.3 is installed
  • OR qemu-ui-sdl-3.1.1-lp151.7.3 is installed
  • OR qemu-vgabios-1.12.0-lp151.7.3 is installed
  • OR qemu-x86-3.1.1-lp151.7.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND sudo-1.8.10p3-10.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND ft2demos-2.6.3-7.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND squid-3.5.21-26.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20191112-13.53 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • apache2-2.4.23-29.27 is installed
  • OR apache2-doc-2.4.23-29.27 is installed
  • OR apache2-example-pages-2.4.23-29.27 is installed
  • OR apache2-prefork-2.4.23-29.27 is installed
  • OR apache2-utils-2.4.23-29.27 is installed
  • OR apache2-worker-2.4.23-29.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libQt5Concurrent5-5.6.2-6.12 is installed
  • OR libQt5Core5-5.6.2-6.12 is installed
  • OR libQt5DBus5-5.6.2-6.12 is installed
  • OR libQt5Gui5-5.6.2-6.12 is installed
  • OR libQt5Network5-5.6.2-6.12 is installed
  • OR libQt5OpenGL5-5.6.2-6.12 is installed
  • OR libQt5PrintSupport5-5.6.2-6.12 is installed
  • OR libQt5Sql5-5.6.2-6.12 is installed
  • OR libQt5Sql5-mysql-5.6.2-6.12 is installed
  • OR libQt5Sql5-postgresql-5.6.2-6.12 is installed
  • OR libQt5Sql5-sqlite-5.6.2-6.12 is installed
  • OR libQt5Sql5-unixODBC-5.6.2-6.12 is installed
  • OR libQt5Test5-5.6.2-6.12 is installed
  • OR libQt5Widgets5-5.6.2-6.12 is installed
  • OR libQt5Xml5-5.6.2-6.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr6.15-30.72 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr6.15-30.72 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr6.15-30.72 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr6.15-30.72 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr6.10-30.69 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr6.10-30.69 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-ecdsa-0.13.3-5.10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libdcerpc-binding0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libdcerpc0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libdcerpc0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-krb5pac0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-krb5pac0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-nbt0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-nbt0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-standard0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr-standard0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libndr0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libnetapi0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libnetapi0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-credentials0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-credentials0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-errors0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-errors0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-hostconfig0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-hostconfig0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-passdb0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-passdb0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-util0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamba-util0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamdb0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsamdb0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbclient0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbclient0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbconf0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbconf0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbldap0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libsmbldap0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libtevent-util0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libtevent-util0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libwbclient0-4.6.16+git.169.064abe062be-3.46 is installed
  • OR libwbclient0-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-client-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-client-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-doc-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-libs-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-libs-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-winbind-4.6.16+git.169.064abe062be-3.46 is installed
  • OR samba-winbind-32bit-4.6.16+git.169.064abe062be-3.46 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND nodejs6-6.17.1-11.37 is installed
  • BACK