Oval Definition:oval:org.opensuse.security:def:60808
Revision Date:2020-12-01Version:1
Title:Security update for gcc9 (Moderate)
Description:

This update for gcc9 fixes the following issues:

The GNU Compiler Collection is shipped in version 9.

A detailed changelog on what changed in GCC 9 is available at https://gcc.gnu.org/gcc-9/changes.html

The compilers have been added to the SUSE Linux Enterprise Toolchain Module.

To use these compilers, install e.g. gcc9, gcc9-c++ and build with CC=gcc-9 CXX=g++-9 set.



For SUSE Linux Enterprise base products, the libstdc++6, libgcc_s1 and other compiler libraries have been switched from their gcc8 variants to their gcc9 variants.

Security issues fixed:

- CVE-2019-15847: Fixed a miscompilation in the POWER9 back end, that optimized multiple calls of the __builtin_darn intrinsic into a single call. (bsc#1149145) - CVE-2019-14250: Fixed a heap overflow in the LTO linker. (bsc#1142649)

Non-security issues fixed:

- Split out libstdc++ pretty-printers into a separate package supplementing gdb and the installed runtime. (bsc#1135254) - Fixed miscompilation for vector shift on s390. (bsc#1141897)
Family:unixClass:patch
Status:Reference(s):1020950
1024749
1043983
1048072
1050469
1055265
1056286
1056782
1056996
1058754
1058755
1058757
1062452
1066892
1069607
1069632
1069925
1073002
1073654
1075419
1078782
1082007
1082008
1082009
1082010
1082011
1082014
1082058
1087433
1087434
1087436
1087437
1087440
1087441
1111331
1112530
1112532
1114592
1122319
1123886
1129346
1130611
1130617
1130620
1130622
1130623
1130627
1130847
1135254
1138872
1141897
1142649
1142654
1142690
1148517
1149145
1152990
1152992
1152994
1152995
1154824
1154980
1155094
1156353
1160305
1160498
1160594
1160764
1161779
1162224
1162367
1162825
1163922
1165894
1171352
1171517
1172275
1172466
1173902
1173994
1174157
1177613
1177943
CVE-2015-9096
CVE-2016-2339
CVE-2016-4692
CVE-2016-4743
CVE-2016-7586
CVE-2016-7587
CVE-2016-7589
CVE-2016-7592
CVE-2016-7598
CVE-2016-7599
CVE-2016-7610
CVE-2016-7623
CVE-2016-7632
CVE-2016-7635
CVE-2016-7639
CVE-2016-7641
CVE-2016-7645
CVE-2016-7652
CVE-2016-7654
CVE-2016-7656
CVE-2016-7798
CVE-2017-0898
CVE-2017-0899
CVE-2017-0900
CVE-2017-0901
CVE-2017-0902
CVE-2017-0903
CVE-2017-10784
CVE-2017-13788
CVE-2017-13798
CVE-2017-13803
CVE-2017-13856
CVE-2017-13866
CVE-2017-13870
CVE-2017-14033
CVE-2017-14064
CVE-2017-14107
CVE-2017-17405
CVE-2017-17742
CVE-2017-17790
CVE-2017-2350
CVE-2017-2354
CVE-2017-2355
CVE-2017-2356
CVE-2017-2362
CVE-2017-2363
CVE-2017-2364
CVE-2017-2365
CVE-2017-2366
CVE-2017-2369
CVE-2017-2371
CVE-2017-2373
CVE-2017-2496
CVE-2017-2510
CVE-2017-2539
CVE-2017-5715
CVE-2017-5753
CVE-2017-5754
CVE-2017-7006
CVE-2017-7011
CVE-2017-7012
CVE-2017-7018
CVE-2017-7019
CVE-2017-7020
CVE-2017-7030
CVE-2017-7034
CVE-2017-7037
CVE-2017-7038
CVE-2017-7039
CVE-2017-7040
CVE-2017-7041
CVE-2017-7042
CVE-2017-7043
CVE-2017-7046
CVE-2017-7048
CVE-2017-7049
CVE-2017-7052
CVE-2017-7055
CVE-2017-7056
CVE-2017-7059
CVE-2017-7061
CVE-2017-7064
CVE-2017-7081
CVE-2017-7087
CVE-2017-7089
CVE-2017-7090
CVE-2017-7091
CVE-2017-7092
CVE-2017-7093
CVE-2017-7094
CVE-2017-7095
CVE-2017-7096
CVE-2017-7098
CVE-2017-7099
CVE-2017-7100
CVE-2017-7102
CVE-2017-7104
CVE-2017-7107
CVE-2017-7109
CVE-2017-7111
CVE-2017-7117
CVE-2017-7120
CVE-2017-7142
CVE-2017-7156
CVE-2017-7157
CVE-2017-9228
CVE-2017-9229
CVE-2018-1000073
CVE-2018-1000074
CVE-2018-1000075
CVE-2018-1000076
CVE-2018-1000077
CVE-2018-1000078
CVE-2018-1000079
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-16395
CVE-2018-16396
CVE-2018-6914
CVE-2018-8777
CVE-2018-8778
CVE-2018-8779
CVE-2018-8780
CVE-2019-10206
CVE-2019-11091
CVE-2019-11708
CVE-2019-14250
CVE-2019-15845
CVE-2019-15847
CVE-2019-16201
CVE-2019-16254
CVE-2019-16255
CVE-2019-17015
CVE-2019-17016
CVE-2019-17017
CVE-2019-17021
CVE-2019-17022
CVE-2019-17024
CVE-2019-17026
CVE-2019-18277
CVE-2019-18348
CVE-2019-6116
CVE-2019-8320
CVE-2019-8321
CVE-2019-8322
CVE-2019-8323
CVE-2019-8324
CVE-2019-8325
CVE-2019-9636
CVE-2019-9674
CVE-2019-9948
CVE-2020-0543
CVE-2020-0548
CVE-2020-0549
CVE-2020-10663
CVE-2020-14318
CVE-2020-14323
CVE-2020-14383
CVE-2020-14556
CVE-2020-14577
CVE-2020-14578
CVE-2020-14579
CVE-2020-14581
CVE-2020-14583
CVE-2020-14593
CVE-2020-14621
CVE-2020-14779
CVE-2020-14781
CVE-2020-14782
CVE-2020-14792
CVE-2020-14796
CVE-2020-14797
CVE-2020-14798
CVE-2020-14803
CVE-2020-8013
CVE-2020-8492
SUSE-SU-2017:2546-1
SUSE-SU-2018:0219-1
SUSE-SU-2019:1684-1
SUSE-SU-2019:2274-1
SUSE-SU-2019:3288-1
SUSE-SU-2020:0394-1
SUSE-SU-2020:0545-1
SUSE-SU-2020:0854-1
SUSE-SU-2020:1570-1
SUSE-SU-2020:1595-1
SUSE-SU-2020:3093-1
SUSE-SU-2020:3191-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.1 NonFree
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libnetpbm-devel-10.80.1-lp151.4.3 is installed
  • OR libnetpbm11-10.80.1-lp151.4.3 is installed
  • OR libnetpbm11-32bit-10.80.1-lp151.4.3 is installed
  • OR netpbm-10.80.1-lp151.4.3 is installed
  • OR netpbm-vulnerable-10.80.1-lp151.4.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 NonFree is installed
  • AND opera-67.0.3575.97-lp151.2.12 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • graphviz-2.40.1-lp152.7.7 is installed
  • OR graphviz-addons-2.40.1-lp152.7.7 is installed
  • OR graphviz-devel-2.40.1-lp152.7.7 is installed
  • OR graphviz-doc-2.40.1-lp152.7.7 is installed
  • OR graphviz-gd-2.40.1-lp152.7.7 is installed
  • OR graphviz-gnome-2.40.1-lp152.7.7 is installed
  • OR graphviz-guile-2.40.1-lp152.7.7 is installed
  • OR graphviz-gvedit-2.40.1-lp152.7.7 is installed
  • OR graphviz-java-2.40.1-lp152.7.7 is installed
  • OR graphviz-lua-2.40.1-lp152.7.7 is installed
  • OR graphviz-perl-2.40.1-lp152.7.7 is installed
  • OR graphviz-php-2.40.1-lp152.7.7 is installed
  • OR graphviz-plugins-core-2.40.1-lp152.7.7 is installed
  • OR graphviz-python-2.40.1-lp152.7.7 is installed
  • OR graphviz-ruby-2.40.1-lp152.7.7 is installed
  • OR graphviz-smyrna-2.40.1-lp152.7.7 is installed
  • OR graphviz-tcl-2.40.1-lp152.7.7 is installed
  • OR libgraphviz6-2.40.1-lp152.7.7 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND
  • MozillaFirefox-60.7.2-109.80 is installed
  • OR MozillaFirefox-translations-common-60.7.2-109.80 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND
  • MozillaFirefox-60.7.2-109.80 is installed
  • OR MozillaFirefox-translations-common-60.7.2-109.80 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libzip-0.11.1-13.3 is installed
  • OR libzip2-0.11.1-13.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.272-27.48 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.272-27.48 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.272-27.48 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.272-27.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-68.4.1-109.101 is installed
  • OR MozillaFirefox-translations-common-68.4.1-109.101 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND ucode-intel-20200602-13.68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • qemu-2.9.1-6.34 is installed
  • OR qemu-block-curl-2.9.1-6.34 is installed
  • OR qemu-block-iscsi-2.9.1-6.34 is installed
  • OR qemu-block-rbd-2.9.1-6.34 is installed
  • OR qemu-block-ssh-2.9.1-6.34 is installed
  • OR qemu-guest-agent-2.9.1-6.34 is installed
  • OR qemu-ipxe-1.0.0+-6.34 is installed
  • OR qemu-kvm-2.9.1-6.34 is installed
  • OR qemu-lang-2.9.1-6.34 is installed
  • OR qemu-seabios-1.10.2-6.34 is installed
  • OR qemu-sgabios-8-6.34 is installed
  • OR qemu-tools-2.9.1-6.34 is installed
  • OR qemu-vgabios-1.10.2-6.34 is installed
  • OR qemu-x86-2.9.1-6.34 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libICE6-1.0.8-12 is installed
  • OR libICE6-32bit-1.0.8-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libjavascriptcoregtk-4_0-18-2.28.4-2.59 is installed
  • OR libwebkit2gtk-4_0-37-2.28.4-2.59 is installed
  • OR libwebkit2gtk3-lang-2.28.4-2.59 is installed
  • OR typelib-1_0-JavaScriptCore-4_0-2.28.4-2.59 is installed
  • OR typelib-1_0-WebKit2-4_0-2.28.4-2.59 is installed
  • OR typelib-1_0-WebKit2WebExtension-4_0-2.28.4-2.59 is installed
  • OR webkit2gtk-4_0-injected-bundles-2.28.4-2.59 is installed
  • OR webkit2gtk3-2.28.4-2.59 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • gcc9-9.2.1+r275327-1.3 is installed
  • OR libasan5-9.2.1+r275327-1.3 is installed
  • OR libasan5-32bit-9.2.1+r275327-1.3 is installed
  • OR libatomic1-9.2.1+r275327-1.3 is installed
  • OR libatomic1-32bit-9.2.1+r275327-1.3 is installed
  • OR libgcc_s1-9.2.1+r275327-1.3 is installed
  • OR libgcc_s1-32bit-9.2.1+r275327-1.3 is installed
  • OR libgfortran5-9.2.1+r275327-1.3 is installed
  • OR libgfortran5-32bit-9.2.1+r275327-1.3 is installed
  • OR libgo14-9.2.1+r275327-1.3 is installed
  • OR libgo14-32bit-9.2.1+r275327-1.3 is installed
  • OR libgomp1-9.2.1+r275327-1.3 is installed
  • OR libgomp1-32bit-9.2.1+r275327-1.3 is installed
  • OR libitm1-9.2.1+r275327-1.3 is installed
  • OR libitm1-32bit-9.2.1+r275327-1.3 is installed
  • OR liblsan0-9.2.1+r275327-1.3 is installed
  • OR libquadmath0-9.2.1+r275327-1.3 is installed
  • OR libquadmath0-32bit-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-32bit-9.2.1+r275327-1.3 is installed
  • OR libstdc++6-locale-9.2.1+r275327-1.3 is installed
  • OR libtsan0-9.2.1+r275327-1.3 is installed
  • OR libubsan1-9.2.1+r275327-1.3 is installed
  • OR libubsan1-32bit-9.2.1+r275327-1.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-Django1-1.11.20-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND ansible-2.4.6.0-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.20-3.3 is installed
  • BACK