Oval Definition:oval:org.opensuse.security:def:60643
Revision Date:2020-12-01Version:1
Title:Security update for sudo (Important)
Description:

This update for sudo fixes the following issues:

Security issue fixed:

- CVE-2019-14287: Fixed an issue where a user with sudo privileges that allowed them to run commands with an arbitrary uid, could run commands as root, despite being forbidden to do so in sudoers (bsc#1153674).

Family:unixClass:patch
Status:Reference(s):1012382
1020413
1023175
1027519
1031492
1035442
1042286
1050549
1051729
1061081
1065600
1067317
1068032
1070158
1070159
1070160
1070163
1070767
1074562
1075697
1076116
1076180
1078355
1082858
1082943
1086095
1086652
1087036
1087092
1090435
1091041
1094823
1098998
1099810
1101410
1101412
1101654
1102875
1102877
1102879
1102882
1102896
1102959
1103040
1103429
1105428
1106061
1106105
1106929
1107866
1109137
1109248
1109695
1114674
1114893
1116345
1116653
1117108
1117645
1117744
1119019
1119461
1119465
1119680
1119843
1120017
1120691
1120722
1120758
1120902
1121713
1121726
1121805
1122650
1122651
1122779
1122885
1123321
1123323
1123357
1123933
1124166
1124235
1124728
1124732
1124735
1124775
1124777
1124780
1124811
1125000
1125014
1125315
1125446
1125794
1125796
1125808
1125809
1125810
1125892
1126230
1126389
1126772
1126773
1126805
1127082
1127155
1127561
1127725
1127731
1127961
1128166
1128452
1128565
1128696
1128756
1128893
1129080
1129179
1129237
1129238
1129239
1129240
1129241
1129413
1129414
1129415
1129416
1129417
1129418
1129419
1129581
1129770
1129923
1131107
1136082
1138190
1139073
1139083
1141035
1146544
1146612
1150466
1150483
1152631
1153674
1153811
1154905
1155689
1155897
1155898
1155988
1156187
1157038
1157042
1157070
1157143
1157158
1157191
1157324
1157333
1157464
1157607
1158132
1158394
1158398
1158410
1158413
1158417
1158445
1158823
1158824
1158827
1158834
1158900
1158903
1158904
1158954
1159913
1160968
1161096
1162553
1163985
1165631
1168630
1169740
1171355
1171670
1171921
1171960
1171961
1171963
1172651
1173334
1175193
1175194
1178666
1178667
1178668
CVE-2017-15595
CVE-2017-17563
CVE-2017-17564
CVE-2017-17565
CVE-2017-17566
CVE-2017-18030
CVE-2017-18249
CVE-2017-5715
CVE-2017-5753
CVE-2017-5754
CVE-2018-0360
CVE-2018-0361
CVE-2018-1000085
CVE-2018-12359
CVE-2018-12360
CVE-2018-12362
CVE-2018-12363
CVE-2018-12364
CVE-2018-12365
CVE-2018-12366
CVE-2018-12368
CVE-2018-14679
CVE-2018-18311
CVE-2018-5156
CVE-2018-5188
CVE-2018-5683
CVE-2018-8956
CVE-2019-11135
CVE-2019-11139
CVE-2019-12900
CVE-2019-14287
CVE-2019-14895
CVE-2019-15213
CVE-2019-16231
CVE-2019-18660
CVE-2019-18680
CVE-2019-18683
CVE-2019-18805
CVE-2019-19052
CVE-2019-19062
CVE-2019-19065
CVE-2019-19073
CVE-2019-19074
CVE-2019-19332
CVE-2019-19338
CVE-2019-19523
CVE-2019-19524
CVE-2019-19525
CVE-2019-19527
CVE-2019-19530
CVE-2019-19531
CVE-2019-19532
CVE-2019-19533
CVE-2019-19534
CVE-2019-19535
CVE-2019-19536
CVE-2019-19537
CVE-2019-2024
CVE-2019-3459
CVE-2019-3460
CVE-2019-5108
CVE-2019-6974
CVE-2019-7221
CVE-2019-7222
CVE-2019-9213
CVE-2020-10753
CVE-2020-11868
CVE-2020-13817
CVE-2020-14349
CVE-2020-14350
CVE-2020-15025
CVE-2020-1720
CVE-2020-1749
CVE-2020-25694
CVE-2020-25695
CVE-2020-25696
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
CVE-2020-6819
CVE-2020-6820
SUSE-SU-2018:0438-1
SUSE-SU-2019:0901-1
SUSE-SU-2019:2013-1
SUSE-SU-2019:2264-1
SUSE-SU-2019:2666-1
SUSE-SU-2019:3379-1
SUSE-SU-2020:0261-1
SUSE-SU-2020:0928-1
SUSE-SU-2020:1748-1
SUSE-SU-2020:1805-1
SUSE-SU-2020:3464-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-lp150.2.9 is installed
  • OR php7-7.2.5-lp150.2.9 is installed
  • OR php7-bcmath-7.2.5-lp150.2.9 is installed
  • OR php7-bz2-7.2.5-lp150.2.9 is installed
  • OR php7-calendar-7.2.5-lp150.2.9 is installed
  • OR php7-ctype-7.2.5-lp150.2.9 is installed
  • OR php7-curl-7.2.5-lp150.2.9 is installed
  • OR php7-dba-7.2.5-lp150.2.9 is installed
  • OR php7-devel-7.2.5-lp150.2.9 is installed
  • OR php7-dom-7.2.5-lp150.2.9 is installed
  • OR php7-embed-7.2.5-lp150.2.9 is installed
  • OR php7-enchant-7.2.5-lp150.2.9 is installed
  • OR php7-exif-7.2.5-lp150.2.9 is installed
  • OR php7-fastcgi-7.2.5-lp150.2.9 is installed
  • OR php7-fileinfo-7.2.5-lp150.2.9 is installed
  • OR php7-firebird-7.2.5-lp150.2.9 is installed
  • OR php7-fpm-7.2.5-lp150.2.9 is installed
  • OR php7-ftp-7.2.5-lp150.2.9 is installed
  • OR php7-gd-7.2.5-lp150.2.9 is installed
  • OR php7-gettext-7.2.5-lp150.2.9 is installed
  • OR php7-gmp-7.2.5-lp150.2.9 is installed
  • OR php7-iconv-7.2.5-lp150.2.9 is installed
  • OR php7-imap-7.0.7-43 is installed
  • OR php7-intl-7.2.5-lp150.2.9 is installed
  • OR php7-json-7.2.5-lp150.2.9 is installed
  • OR php7-ldap-7.2.5-lp150.2.9 is installed
  • OR php7-mbstring-7.2.5-lp150.2.9 is installed
  • OR php7-mcrypt-7.0.7-43 is installed
  • OR php7-mysql-7.2.5-lp150.2.9 is installed
  • OR php7-odbc-7.2.5-lp150.2.9 is installed
  • OR php7-opcache-7.2.5-lp150.2.9 is installed
  • OR php7-openssl-7.2.5-lp150.2.9 is installed
  • OR php7-pcntl-7.2.5-lp150.2.9 is installed
  • OR php7-pdo-7.2.5-lp150.2.9 is installed
  • OR php7-pear-7.2.5-lp150.2.9 is installed
  • OR php7-pear-Archive_Tar-7.2.5-lp150.2.9 is installed
  • OR php7-pgsql-7.2.5-lp150.2.9 is installed
  • OR php7-phar-7.2.5-lp150.2.9 is installed
  • OR php7-posix-7.2.5-lp150.2.9 is installed
  • OR php7-pspell-7.0.7-43 is installed
  • OR php7-readline-7.2.5-lp150.2.9 is installed
  • OR php7-shmop-7.2.5-lp150.2.9 is installed
  • OR php7-snmp-7.2.5-lp150.2.9 is installed
  • OR php7-soap-7.2.5-lp150.2.9 is installed
  • OR php7-sockets-7.2.5-lp150.2.9 is installed
  • OR php7-sodium-7.2.5-lp150.2.9 is installed
  • OR php7-sqlite-7.2.5-lp150.2.9 is installed
  • OR php7-sysvmsg-7.2.5-lp150.2.9 is installed
  • OR php7-sysvsem-7.2.5-lp150.2.9 is installed
  • OR php7-sysvshm-7.2.5-lp150.2.9 is installed
  • OR php7-tidy-7.2.5-lp150.2.9 is installed
  • OR php7-tokenizer-7.2.5-lp150.2.9 is installed
  • OR php7-wddx-7.2.5-lp150.2.9 is installed
  • OR php7-xmlreader-7.2.5-lp150.2.9 is installed
  • OR php7-xmlrpc-7.2.5-lp150.2.9 is installed
  • OR php7-xmlwriter-7.2.5-lp150.2.9 is installed
  • OR php7-xsl-7.2.5-lp150.2.9 is installed
  • OR php7-zip-7.2.5-lp150.2.9 is installed
  • OR php7-zlib-7.2.5-lp150.2.9 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libtasn1-4.13-lp151.4.3 is installed
  • OR libtasn1-6-4.13-lp151.4.3 is installed
  • OR libtasn1-6-32bit-4.13-lp151.4.3 is installed
  • OR libtasn1-devel-4.13-lp151.4.3 is installed
  • OR libtasn1-devel-32bit-4.13-lp151.4.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • qemu-4.2.1-lp152.9.3 is installed
  • OR qemu-arm-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-alsa-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-pa-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-sdl-4.2.1-lp152.9.3 is installed
  • OR qemu-block-curl-4.2.1-lp152.9.3 is installed
  • OR qemu-block-dmg-4.2.1-lp152.9.3 is installed
  • OR qemu-block-gluster-4.2.1-lp152.9.3 is installed
  • OR qemu-block-iscsi-4.2.1-lp152.9.3 is installed
  • OR qemu-block-nfs-4.2.1-lp152.9.3 is installed
  • OR qemu-block-rbd-4.2.1-lp152.9.3 is installed
  • OR qemu-block-ssh-4.2.1-lp152.9.3 is installed
  • OR qemu-extra-4.2.1-lp152.9.3 is installed
  • OR qemu-guest-agent-4.2.1-lp152.9.3 is installed
  • OR qemu-ipxe-1.0.0+-lp152.9.3 is installed
  • OR qemu-ksm-4.2.1-lp152.9.3 is installed
  • OR qemu-kvm-4.2.1-lp152.9.3 is installed
  • OR qemu-lang-4.2.1-lp152.9.3 is installed
  • OR qemu-linux-user-4.2.1-lp152.9.3 is installed
  • OR qemu-microvm-4.2.1-lp152.9.3 is installed
  • OR qemu-ppc-4.2.1-lp152.9.3 is installed
  • OR qemu-s390-4.2.1-lp152.9.3 is installed
  • OR qemu-seabios-1.12.1+-lp152.9.3 is installed
  • OR qemu-sgabios-8-lp152.9.3 is installed
  • OR qemu-testsuite-4.2.1-lp152.9.3 is installed
  • OR qemu-tools-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-curses-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-gtk-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-sdl-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-spice-app-4.2.1-lp152.9.3 is installed
  • OR qemu-vgabios-1.12.1+-lp152.9.3 is installed
  • OR qemu-vhost-user-gpu-4.2.1-lp152.9.3 is installed
  • OR qemu-x86-4.2.1-lp152.9.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • xen-4.9.1_08-3.26 is installed
  • OR xen-doc-html-4.9.1_08-3.26 is installed
  • OR xen-libs-4.9.1_08-3.26 is installed
  • OR xen-libs-32bit-4.9.1_08-3.26 is installed
  • OR xen-tools-4.9.1_08-3.26 is installed
  • OR xen-tools-domU-4.9.1_08-3.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20191112a-13.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • MozillaFirefox-52.9.0esr-109.38 is installed
  • OR MozillaFirefox-translations-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND SuSEfirewall2-3.6.312.333-3.13 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND sudo-1.8.20p2-3.14 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-ecdsa-0.13.3-5.10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • perl-5.18.2-12.20 is installed
  • OR perl-32bit-5.18.2-12.20 is installed
  • OR perl-base-5.18.2-12.20 is installed
  • OR perl-doc-5.18.2-12.20 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • xen-4.11.4_04-2.30 is installed
  • OR xen-doc-html-4.11.4_04-2.30 is installed
  • OR xen-libs-4.11.4_04-2.30 is installed
  • OR xen-libs-32bit-4.11.4_04-2.30 is installed
  • OR xen-tools-4.11.4_04-2.30 is installed
  • OR xen-tools-domU-4.11.4_04-2.30 is installed
  • BACK