Oval Definition:oval:org.opensuse.security:def:60586
Revision Date:2020-12-01Version:1
Title:Security update for cobbler (Moderate)
Description:

This update for cobbler fixes the following issues:

The following security issue has been fixed:

- CVE-2017-1000469: Escape shell parameters provided by the user for the reposync action. (bsc#1074594)

Additionally, the following non-security issues have been fixed:

- Fix signature for SLES15. (bsc#1075014) - Detect if there is already another instance of 'cobbler sync' running and exit with failure if so. (bsc#1081714) - Add SLES 15 distro profile. (bsc#1090205) - Require tftp(server) instead of atftp.
Family:unixClass:patch
Status:Reference(s):1005023
1074594
1075014
1075775
1076696
1077535
1079512
1081714
1088182
1088932
1090205
1092278
1092279
1092280
1095611
1096060
1096061
1097693
1101591
1101999
1102530
1104169
1114981
1115518
1119971
1120323
1137825
1139083
1146358
1146359
1152856
1154212
1157763
1158442
1159856
1159858
1159860
1160250
1160251
1160937
1165643
1167976
1172515
1173477
1173691
1173694
1173700
1173701
1173743
1173874
1173875
1173876
1173880
1173986
1174157
1174420
1176315
1176410
1176756
1177143
CVE-2017-1000469
CVE-2017-13884
CVE-2017-13885
CVE-2017-18922
CVE-2017-7153
CVE-2017-7160
CVE-2017-7161
CVE-2017-7165
CVE-2018-11646
CVE-2018-11712
CVE-2018-11713
CVE-2018-12911
CVE-2018-16864
CVE-2018-16865
CVE-2018-16866
CVE-2018-21247
CVE-2018-4088
CVE-2018-4096
CVE-2018-4101
CVE-2018-4113
CVE-2018-4114
CVE-2018-4117
CVE-2018-4118
CVE-2018-4119
CVE-2018-4120
CVE-2018-4121
CVE-2018-4122
CVE-2018-4125
CVE-2018-4127
CVE-2018-4128
CVE-2018-4129
CVE-2018-4133
CVE-2018-4146
CVE-2018-4161
CVE-2018-4162
CVE-2018-4163
CVE-2018-4165
CVE-2018-4190
CVE-2018-4199
CVE-2018-4200
CVE-2018-4204
CVE-2018-4218
CVE-2018-4222
CVE-2018-4232
CVE-2018-4233
CVE-2018-4246
CVE-2019-12387
CVE-2019-12900
CVE-2019-15691
CVE-2019-15692
CVE-2019-15693
CVE-2019-15694
CVE-2019-15695
CVE-2019-15961
CVE-2019-17631
CVE-2019-20839
CVE-2019-20840
CVE-2019-2894
CVE-2019-2933
CVE-2019-2933
CVE-2019-2945
CVE-2019-2945
CVE-2019-2949
CVE-2019-2958
CVE-2019-2958
CVE-2019-2962
CVE-2019-2962
CVE-2019-2964
CVE-2019-2964
CVE-2019-2973
CVE-2019-2973
CVE-2019-2975
CVE-2019-2978
CVE-2019-2978
CVE-2019-2981
CVE-2019-2981
CVE-2019-2983
CVE-2019-2983
CVE-2019-2987
CVE-2019-2988
CVE-2019-2988
CVE-2019-2989
CVE-2019-2989
CVE-2019-2992
CVE-2019-2992
CVE-2019-2996
CVE-2019-2999
CVE-2019-2999
CVE-2019-8675
CVE-2019-8696
CVE-2020-14397
CVE-2020-14398
CVE-2020-14399
CVE-2020-14400
CVE-2020-14401
CVE-2020-14402
CVE-2020-14403
CVE-2020-14404
CVE-2020-14577
CVE-2020-14578
CVE-2020-14579
CVE-2020-14581
CVE-2020-14583
CVE-2020-14593
CVE-2020-14621
CVE-2020-15673
CVE-2020-15676
CVE-2020-15677
CVE-2020-15678
CVE-2020-17507
CVE-2020-25219
CVE-2020-26154
CVE-2020-9543
SUSE-SU-2018:1736-1
SUSE-SU-2018:3387-1
SUSE-SU-2019:0135-1
SUSE-SU-2019:2066-1
SUSE-SU-2019:3057-1
SUSE-SU-2019:3084-1
SUSE-SU-2019:3177-1
SUSE-SU-2020:0159-1
SUSE-SU-2020:0660-1
SUSE-SU-2020:2167-1
SUSE-SU-2020:2861-1
SUSE-SU-2020:2900-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • openslp-2.0.0-lp150.5.3 is installed
  • OR openslp-32bit-2.0.0-lp150.5.3 is installed
  • OR openslp-devel-2.0.0-lp150.5.3 is installed
  • OR openslp-server-2.0.0-lp150.5.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-common-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-other-60.7.2-lp151.2.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.20.3-2.23 is installed
  • OR libwebkit2gtk-4_0-37-2.20.3-2.23 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.20.3-2.23 is installed
  • OR typelib-1_0-WebKit2-4_0-2.20.3-2.23 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.20.3-2.23 is installed
  • OR webkit2gtk3-2.20.3-2.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • cups-1.7.5-20.26 is installed
  • OR cups-client-1.7.5-20.26 is installed
  • OR cups-libs-1.7.5-20.26 is installed
  • OR cups-libs-32bit-1.7.5-20.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND mailman-2.1.17-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • automake-1.13.4-6 is installed
  • OR m4-1.4.16-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • xorg-x11-server-1.19.6-4.11 is installed
  • OR xorg-x11-server-extra-1.19.6-4.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND cobbler-2.6.6-49.9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • libX11-1.6.2-12.8 is installed
  • OR libX11-6-1.6.2-12.8 is installed
  • OR libX11-6-32bit-1.6.2-12.8 is installed
  • OR libX11-data-1.6.2-12.8 is installed
  • OR libX11-xcb1-1.6.2-12.8 is installed
  • OR libX11-xcb1-32bit-1.6.2-12.8 is installed
  • OR libxcb-1.10-4.5 is installed
  • OR libxcb-dri2-0-1.10-4.5 is installed
  • OR libxcb-dri2-0-32bit-1.10-4.5 is installed
  • OR libxcb-dri3-0-1.10-4.5 is installed
  • OR libxcb-dri3-0-32bit-1.10-4.5 is installed
  • OR libxcb-glx0-1.10-4.5 is installed
  • OR libxcb-glx0-32bit-1.10-4.5 is installed
  • OR libxcb-present0-1.10-4.5 is installed
  • OR libxcb-present0-32bit-1.10-4.5 is installed
  • OR libxcb-randr0-1.10-4.5 is installed
  • OR libxcb-render0-1.10-4.5 is installed
  • OR libxcb-render0-32bit-1.10-4.5 is installed
  • OR libxcb-shape0-1.10-4.5 is installed
  • OR libxcb-shm0-1.10-4.5 is installed
  • OR libxcb-shm0-32bit-1.10-4.5 is installed
  • OR libxcb-sync1-1.10-4.5 is installed
  • OR libxcb-sync1-32bit-1.10-4.5 is installed
  • OR libxcb-xf86dri0-1.10-4.5 is installed
  • OR libxcb-xfixes0-1.10-4.5 is installed
  • OR libxcb-xfixes0-32bit-1.10-4.5 is installed
  • OR libxcb-xinerama0-1.10-4.5 is installed
  • OR libxcb-xkb1-1.10-4.5 is installed
  • OR libxcb-xkb1-32bit-1.10-4.5 is installed
  • OR libxcb-xv0-1.10-4.5 is installed
  • OR libxcb1-1.10-4.5 is installed
  • OR libxcb1-32bit-1.10-4.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.241-43.30 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • crowbar-core-6.0+git.1587558898.313bb9fd3-3.22 is installed
  • OR crowbar-core-branding-upstream-6.0+git.1587558898.313bb9fd3-3.22 is installed
  • OR crowbar-ha-6.0+git.1586256059.e6f67e1-3.16 is installed
  • OR crowbar-openstack-6.0+git.1587753188.da39e44a7-3.22 is installed
  • OR memcached-1.5.17-3.3 is installed
  • OR openstack-ceilometer-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-central-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-compute-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-ipmi-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-agent-notification-11.1.1~dev5-3.13 is installed
  • OR openstack-ceilometer-polling-11.1.1~dev5-3.13 is installed
  • OR openstack-cinder-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-api-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-backup-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-scheduler-13.0.10~dev9-3.19 is installed
  • OR openstack-cinder-volume-13.0.10~dev9-3.19 is installed
  • OR openstack-designate-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-agent-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-api-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-central-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-producer-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-sink-7.0.1~dev25-3.16 is installed
  • OR openstack-designate-worker-7.0.1~dev25-3.16 is installed
  • OR openstack-heat-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-api-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-api-cfn-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-engine-11.0.3~dev35-3.16 is installed
  • OR openstack-heat-plugin-heat_docker-11.0.3~dev35-3.16 is installed
  • OR openstack-ironic-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-api-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-conductor-11.1.5~dev3-3.16 is installed
  • OR openstack-ironic-image-9.0.0-3.6 is installed
  • OR openstack-ironic-image-x86_64-9.0.0-3.6 is installed
  • OR openstack-manila-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-api-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-data-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-scheduler-7.4.2~dev4-4.21 is installed
  • OR openstack-manila-share-7.4.2~dev4-4.21 is installed
  • OR openstack-neutron-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-dhcp-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-ha-tool-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-l3-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-macvtap-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-metadata-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-metering-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.8~dev28-3.22 is installed
  • OR openstack-neutron-server-13.0.8~dev28-3.22 is installed
  • OR openstack-nova-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-api-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-cells-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-compute-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-conductor-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-console-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-placement-api-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-scheduler-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev17-3.22 is installed
  • OR openstack-octavia-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-amphora-agent-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-amphora-image-0.1.3-7.9 is installed
  • OR openstack-octavia-amphora-image-x86_64-0.1.3-7.9 is installed
  • OR openstack-octavia-api-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-health-manager-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-housekeeping-3.2.3~dev2-3.22 is installed
  • OR openstack-octavia-worker-3.2.3~dev2-3.22 is installed
  • OR python-ceilometer-11.1.1~dev5-3.13 is installed
  • OR python-cinder-13.0.10~dev9-3.19 is installed
  • OR python-cinderclient-4.0.3-3.6 is installed
  • OR python-cinderclient-doc-4.0.3-3.6 is installed
  • OR python-designate-7.0.1~dev25-3.16 is installed
  • OR python-glanceclient-2.13.2-3.3 is installed
  • OR python-glanceclient-doc-2.13.2-3.3 is installed
  • OR python-heat-11.0.3~dev35-3.16 is installed
  • OR python-ironic-11.1.5~dev3-3.16 is installed
  • OR python-ironic-lib-2.14.3-3.6 is installed
  • OR python-ironicclient-2.5.4-4.10 is installed
  • OR python-ironicclient-doc-2.5.4-4.10 is installed
  • OR python-keystonemiddleware-5.2.2-17 is installed
  • OR python-manila-7.4.2~dev4-4.21 is installed
  • OR python-manila-tempest-plugin-0.1.0-3.6 is installed
  • OR python-neutron-13.0.8~dev28-3.22 is installed
  • OR python-nova-18.3.1~dev17-3.22 is installed
  • OR python-novaclient-11.0.1-3.3 is installed
  • OR python-novaclient-doc-11.0.1-3.3 is installed
  • OR python-octavia-3.2.3~dev2-3.22 is installed
  • OR python-octaviaclient-1.6.2-3.6 is installed
  • OR python-openstackclient-3.16.3-11 is installed
  • OR python-os-brick-2.5.10-3.9 is installed
  • OR python-os-brick-common-2.5.10-3.9 is installed
  • OR python-oslo.config-6.4.2-3.3 is installed
  • OR python-oslo.config-doc-6.4.2-3.3 is installed
  • OR python-oslo.rootwrap-5.14.2-3.3 is installed
  • OR python-oslo.utils-3.36.5-3.3 is installed
  • OR python-swiftclient-3.6.1-3.3 is installed
  • OR python-swiftclient-doc-3.6.1-3.3 is installed
  • OR python-watcherclient-2.1.1-3.3 is installed
  • OR release-notes-suse-openstack-cloud-9.20200319-3.18 is installed
  • OR ruby2.1-rubygem-crowbar-client-3.9.2-3.6 is installed
  • OR ruby2.1-rubygem-puma-2.16.0-4.6 is installed
  • OR rubygem-crowbar-client-3.9.2-3.6 is installed
  • OR rubygem-puma-2.16.0-4.6 is installed
  • OR zookeeper-3.4.13-3.3 is installed
  • OR zookeeper-server-3.4.13-3.3 is installed
  • BACK