Oval Definition:oval:org.opensuse.security:def:60608
Revision Date:2020-12-01Version:1
Title:Security update for libsolv, libzypp, zypper (Moderate)
Description:

This update for libsolv, libzypp and zypper fixes the following issues:

libsolv was updated to version 0.6.36 fixes the following issues:

Security issues fixed:

- CVE-2018-20532: Fixed a NULL pointer dereference in testcase_read() (bsc#1120629). - CVE-2018-20533: Fixed a NULL pointer dereference in testcase_str2dep_complex() (bsc#1120630). - CVE-2018-20534: Fixed a NULL pointer dereference in pool_whatprovides() (bsc#1120631).

Non-security issues fixed:

- Made cleandeps jobs on patterns work (bsc#1137977). - Fixed an issue multiversion packages that obsolete their own name (bsc#1127155). - Keep consistent package name if there are multiple alternatives (bsc#1131823).

libzypp received following fixes:

- Fixes a bug where locking the kernel was not possible (bsc#1113296)

zypper received following fixes:

- Fixes a bug where the wrong exit code was set when refreshing repos if --root was used (bsc#1134226) - Improved the displaying of locks (bsc#1112911) - Fixes an issue where `https` repository urls caused an error prompt to appear twice (bsc#1110542) - zypper will now always warn when no repositories are defined (bsc#1109893)
Family:unixClass:patch
Status:Reference(s):1011920
1012382
1012422
1020645
1031392
1035053
1042422
1043591
1048129
1050431
1050549
1053043
1054239
1057199
1065600
1065726
1067906
1068664
1073579
1076393
1078788
1079524
1082519
1083215
1083527
1084760
1089343
1091158
1093118
1094244
1094825
1095805
1096052
1098050
1098996
1099597
1100973
1101555
1103308
1103405
1104124
1104301
1105025
1105428
1105795
1105931
1106105
1106110
1106240
1106293
1106359
1106434
1106594
1106913
1106929
1107060
1107299
1107318
1107535
1107829
1107870
1108315
1108377
1108498
1109158
1109333
1109772
1109784
1109806
1109818
1109893
1109907
1109919
1109923
1110006
1110363
1110468
1110542
1110600
1110601
1110602
1110603
1110604
1110605
1110606
1110611
1110612
1110613
1110614
1110615
1110616
1110618
1110619
1111319
1111331
1111363
1111516
1111870
1112007
1112262
1112263
1112894
1112902
1112903
1112905
1112911
1113296
1113667
1113751
1113769
1114178
1114229
1114648
1120629
1120630
1120631
1127155
1131823
1134226
1135273
1137832
1137977
1138461
1145604
1151021
1155419
1159208
1159623
1160471
1162610
1167231
1170441
1170603
1172515
1173576
1173613
1176315
1178512
981083
997172
CVE-2012-0876
CVE-2016-0718
CVE-2016-4472
CVE-2016-9063
CVE-2017-1000158
CVE-2017-18379
CVE-2017-9233
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-14633
CVE-2018-18281
CVE-2018-18386
CVE-2018-18690
CVE-2018-18710
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
CVE-2018-5383
CVE-2018-8007
CVE-2018-9516
CVE-2019-11091
CVE-2019-12749
CVE-2019-12855
CVE-2019-14835
CVE-2019-15681
CVE-2019-15690
CVE-2019-20788
CVE-2020-12268
CVE-2020-12402
CVE-2020-12415
CVE-2020-12416
CVE-2020-12417
CVE-2020-12418
CVE-2020-12419
CVE-2020-12420
CVE-2020-12421
CVE-2020-12422
CVE-2020-12423
CVE-2020-12424
CVE-2020-12425
CVE-2020-12426
CVE-2020-17507
CVE-2020-28196
CVE-2020-8597
SUSE-SU-2018:2765-1
SUSE-SU-2018:3689-1
SUSE-SU-2019:0466-1
SUSE-SU-2019:1547-1
SUSE-SU-2019:1972-1
SUSE-SU-2019:2453-1
SUSE-SU-2020:1165-1
SUSE-SU-2020:1212-1
SUSE-SU-2020:1899-1
SUSE-SU-2020:2660-1
SUSE-SU-2020:3379-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND mailman-2.1.29-lp150.2.8 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • kernel-debug-4.12.14-lp151.28.10 is installed
  • OR kernel-debug-base-4.12.14-lp151.28.10 is installed
  • OR kernel-debug-devel-4.12.14-lp151.28.10 is installed
  • OR kernel-default-4.12.14-lp151.28.10 is installed
  • OR kernel-default-base-4.12.14-lp151.28.10 is installed
  • OR kernel-default-devel-4.12.14-lp151.28.10 is installed
  • OR kernel-devel-4.12.14-lp151.28.10 is installed
  • OR kernel-docs-4.12.14-lp151.28.10 is installed
  • OR kernel-docs-html-4.12.14-lp151.28.10 is installed
  • OR kernel-kvmsmall-4.12.14-lp151.28.10 is installed
  • OR kernel-kvmsmall-base-4.12.14-lp151.28.10 is installed
  • OR kernel-kvmsmall-devel-4.12.14-lp151.28.10 is installed
  • OR kernel-macros-4.12.14-lp151.28.10 is installed
  • OR kernel-obs-build-4.12.14-lp151.28.10 is installed
  • OR kernel-obs-qa-4.12.14-lp151.28.10 is installed
  • OR kernel-source-4.12.14-lp151.28.10 is installed
  • OR kernel-source-vanilla-4.12.14-lp151.28.10 is installed
  • OR kernel-syms-4.12.14-lp151.28.10 is installed
  • OR kernel-vanilla-4.12.14-lp151.28.10 is installed
  • OR kernel-vanilla-base-4.12.14-lp151.28.10 is installed
  • OR kernel-vanilla-devel-4.12.14-lp151.28.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • kernel-default-4.4.162-94.69 is installed
  • OR kernel-default-base-4.4.162-94.69 is installed
  • OR kernel-default-devel-4.4.162-94.69 is installed
  • OR kernel-default-man-4.4.162-94.69 is installed
  • OR kernel-devel-4.4.162-94.69 is installed
  • OR kernel-macros-4.4.162-94.69 is installed
  • OR kernel-source-4.4.162-94.69 is installed
  • OR kernel-syms-4.4.162-94.69 is installed
  • OR lttng-modules-2.7.1-8.6 is installed
  • OR lttng-modules-kmp-default-2.7.1_k4.4.162_94.69-8.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_156-94_61-default-8-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_19-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • dbus-1-1.8.22-29.17 is installed
  • OR dbus-1-x11-1.8.22-29.17 is installed
  • OR libdbus-1-3-1.8.22-29.17 is installed
  • OR libdbus-1-3-32bit-1.8.22-29.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND ucode-intel-20190507-13.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-38.8 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-38.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • libX11-1.6.2-12.8 is installed
  • OR libX11-6-1.6.2-12.8 is installed
  • OR libX11-6-32bit-1.6.2-12.8 is installed
  • OR libX11-data-1.6.2-12.8 is installed
  • OR libX11-xcb1-1.6.2-12.8 is installed
  • OR libX11-xcb1-32bit-1.6.2-12.8 is installed
  • OR libxcb-1.10-4.5 is installed
  • OR libxcb-dri2-0-1.10-4.5 is installed
  • OR libxcb-dri2-0-32bit-1.10-4.5 is installed
  • OR libxcb-dri3-0-1.10-4.5 is installed
  • OR libxcb-dri3-0-32bit-1.10-4.5 is installed
  • OR libxcb-glx0-1.10-4.5 is installed
  • OR libxcb-glx0-32bit-1.10-4.5 is installed
  • OR libxcb-present0-1.10-4.5 is installed
  • OR libxcb-present0-32bit-1.10-4.5 is installed
  • OR libxcb-randr0-1.10-4.5 is installed
  • OR libxcb-render0-1.10-4.5 is installed
  • OR libxcb-render0-32bit-1.10-4.5 is installed
  • OR libxcb-shape0-1.10-4.5 is installed
  • OR libxcb-shm0-1.10-4.5 is installed
  • OR libxcb-shm0-32bit-1.10-4.5 is installed
  • OR libxcb-sync1-1.10-4.5 is installed
  • OR libxcb-sync1-32bit-1.10-4.5 is installed
  • OR libxcb-xf86dri0-1.10-4.5 is installed
  • OR libxcb-xfixes0-1.10-4.5 is installed
  • OR libxcb-xfixes0-32bit-1.10-4.5 is installed
  • OR libxcb-xinerama0-1.10-4.5 is installed
  • OR libxcb-xkb1-1.10-4.5 is installed
  • OR libxcb-xkb1-32bit-1.10-4.5 is installed
  • OR libxcb-xv0-1.10-4.5 is installed
  • OR libxcb1-1.10-4.5 is installed
  • OR libxcb1-32bit-1.10-4.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libsolv-0.6.36-2.16 is installed
  • OR libsolv-tools-0.6.36-2.16 is installed
  • OR libzypp-16.20.0-2.39 is installed
  • OR perl-solv-0.6.36-2.16 is installed
  • OR python-solv-0.6.36-2.16 is installed
  • OR zypper-1.13.51-21.26 is installed
  • OR zypper-log-1.13.51-21.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • ovmf-2017+git1510945757.b2662641d5-3.29 is installed
  • OR ovmf-tools-2017+git1510945757.b2662641d5-3.29 is installed
  • OR qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND couchdb-1.7.2-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-ipaddress-1.0.18-3.13 is installed
  • BACK