Oval Definition:oval:org.opensuse.security:def:60184
Revision Date:2020-12-01Version:1
Title:Security update for libzypp, zypper (Moderate)
Description:

This update for libzypp, zypper fixes the following issues:

libzypp fixes the following security issue:

- CVE-2019-18900: Fixed assert cookie file that was world readable (bsc#1158763).

zypper was updated to fix the following issues:

- Fixed an issue, where zypper crashed when the system language is set to Spanish and the user tried to patch their system with 'zypper patch --category security' (bsc#1178038) - Fixed a typo in man page (bsc#1169947)

Family:unixClass:patch
Status:Reference(s):1008325
1038984
1045735
1047785
1054088
1054671
1055920
1077080
1082692
1091236
1100365
1124211
1128471
1128472
1128474
1128476
1128480
1128481
1128490
1128492
1128493
1132665
1137832
1141493
1150011
1158763
1164692
1166238
1168422
1169947
1178038
CVE-2009-2473
CVE-2009-2474
CVE-2011-3146
CVE-2011-4349
CVE-2013-1881
CVE-2013-4238
CVE-2016-0772
CVE-2016-1000110
CVE-2016-5636
CVE-2016-5699
CVE-2016-5759
CVE-2017-12652
CVE-2017-17997
CVE-2017-7436
CVE-2018-14348
CVE-2018-7320
CVE-2018-7321
CVE-2018-7322
CVE-2018-7323
CVE-2018-7324
CVE-2018-7325
CVE-2018-7326
CVE-2018-7327
CVE-2018-7328
CVE-2018-7329
CVE-2018-7330
CVE-2018-7331
CVE-2018-7332
CVE-2018-7333
CVE-2018-7334
CVE-2018-7335
CVE-2018-7336
CVE-2018-7337
CVE-2018-7417
CVE-2018-7418
CVE-2018-7419
CVE-2018-7420
CVE-2018-7421
CVE-2019-12749
CVE-2019-14822
CVE-2019-18900
CVE-2019-20503
CVE-2019-3855
CVE-2019-3856
CVE-2019-3857
CVE-2019-3858
CVE-2019-3859
CVE-2019-3860
CVE-2019-3861
CVE-2019-3862
CVE-2019-3863
CVE-2019-7317
CVE-2020-1938
CVE-2020-3898
CVE-2020-6805
CVE-2020-6806
CVE-2020-6807
CVE-2020-6811
CVE-2020-6812
CVE-2020-6814
SUSE-SU-2017:2344-1
SUSE-SU-2018:0811-1
SUSE-SU-2018:2143-1
SUSE-SU-2019:0655-1
SUSE-SU-2019:2389-1
SUSE-SU-2020:0717-1
SUSE-SU-2020:0725-1
SUSE-SU-2020:1045-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • GraphicsMagick-1.3.29-lp150.3.25 is installed
  • OR GraphicsMagick-devel-1.3.29-lp150.3.25 is installed
  • OR libGraphicsMagick++-Q16-12-1.3.29-lp150.3.25 is installed
  • OR libGraphicsMagick++-devel-1.3.29-lp150.3.25 is installed
  • OR libGraphicsMagick-Q16-3-1.3.29-lp150.3.25 is installed
  • OR libGraphicsMagick3-config-1.3.29-lp150.3.25 is installed
  • OR libGraphicsMagickWand-Q16-2-1.3.29-lp150.3.25 is installed
  • OR perl-GraphicsMagick-1.3.29-lp150.3.25 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • expat-2.2.5-lp151.3.3 is installed
  • OR libexpat-devel-2.2.5-lp151.3.3 is installed
  • OR libexpat-devel-32bit-2.2.5-lp151.3.3 is installed
  • OR libexpat1-2.2.5-lp151.3.3 is installed
  • OR libexpat1-32bit-2.2.5-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libzypp-16.21.2-27.70 is installed
  • OR libzypp-devel-16.21.2-27.70 is installed
  • OR zypper-1.13.57-18.46 is installed
  • OR zypper-log-1.13.57-18.46 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • colord-gtk-lang-0.1.26-6 is installed
  • OR libcolord-gtk1-0.1.26-6 is installed
  • OR libcolord2-1.3.3-12 is installed
  • OR libcolord2-32bit-1.3.3-12 is installed
  • OR libcolorhug2-1.3.3-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • glibc-2.22-113 is installed
  • OR glibc-32bit-2.22-113 is installed
  • OR glibc-devel-2.22-113 is installed
  • OR glibc-devel-32bit-2.22-113 is installed
  • OR glibc-html-2.22-113 is installed
  • OR glibc-i18ndata-2.22-113 is installed
  • OR glibc-info-2.22-113 is installed
  • OR glibc-locale-2.22-113 is installed
  • OR glibc-locale-32bit-2.22-113 is installed
  • OR glibc-profile-2.22-113 is installed
  • OR glibc-profile-32bit-2.22-113 is installed
  • OR nscd-2.22-113 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.55 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.55 is installed
  • OR openssl-1.0.2j-60.55 is installed
  • OR openssl-doc-1.0.2j-60.55 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • dbus-1-1.8.22-29.17 is installed
  • OR dbus-1-x11-1.8.22-29.17 is installed
  • OR libdbus-1-3-1.8.22-29.17 is installed
  • OR libdbus-1-3-32bit-1.8.22-29.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • apache2-2.4.23-29.24 is installed
  • OR apache2-doc-2.4.23-29.24 is installed
  • OR apache2-example-pages-2.4.23-29.24 is installed
  • OR apache2-prefork-2.4.23-29.24 is installed
  • OR apache2-utils-2.4.23-29.24 is installed
  • OR apache2-worker-2.4.23-29.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • bzip2-1.0.6-29 is installed
  • OR bzip2-doc-1.0.6-29 is installed
  • OR libbz2-1-1.0.6-29 is installed
  • OR libbz2-1-32bit-1.0.6-29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • grub2-2.02-12.31 is installed
  • OR grub2-i386-pc-2.02-12.31 is installed
  • OR grub2-snapper-plugin-2.02-12.31 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.31 is installed
  • OR grub2-x86_64-efi-2.02-12.31 is installed
  • OR grub2-x86_64-xen-2.02-12.31 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • cups-1.7.5-20.29 is installed
  • OR cups-client-1.7.5-20.29 is installed
  • OR cups-libs-1.7.5-20.29 is installed
  • OR cups-libs-32bit-1.7.5-20.29 is installed
  • BACK