Oval Definition:oval:org.opensuse.security:def:60809
Revision Date:2020-12-01Version:1
Title:Security update for sudo (Important)
Description:

This update for sudo fixes the following issues:

Security issue fixed:

- CVE-2019-18634: Fixed a buffer overflow in the passphrase prompt that could occur when pwfeedback was enabled in /etc/sudoers (bsc#1162202).

Non-security issue fixed:

- Fixed an issue where sudo -l would ask for a password even though `listpw` was set to `never` (bsc#1162675).
Family:unixClass:patch
Status:Reference(s):1027519
1058058
1069257
1106383
1111331
1111622
1119376
1120095
1122319
1122668
1129071
1130680
1132663
1132900
1133495
1134689
1137443
1139459
1141322
1151377
1151506
1152497
1154043
1154448
1154456
1154458
1154460
1154461
1154464
1154824
1155574
1155945
1156482
1157888
1158003
1158004
1158005
1158006
1158007
1158527
1159814
1159819
1161951
1162108
1162202
1162675
1163985
1164871
1169025
1169511
1169625
1170383
1170618
1170620
1171098
1171195
1171202
1171218
1171219
1171689
1171698
1172032
1172221
1172317
1174955
1177155
CVE-2017-16899
CVE-2017-9798
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-12207
CVE-2018-18074
CVE-2018-20060
CVE-2018-20815
CVE-2019-10130
CVE-2019-11091
CVE-2019-11135
CVE-2019-11236
CVE-2019-11324
CVE-2019-11745
CVE-2019-12735
CVE-2019-17006
CVE-2019-18420
CVE-2019-18421
CVE-2019-18422
CVE-2019-18423
CVE-2019-18424
CVE-2019-18425
CVE-2019-18634
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19582
CVE-2019-19583
CVE-2019-6116
CVE-2019-9740
CVE-2020-0543
CVE-2020-10757
CVE-2020-12114
CVE-2020-12652
CVE-2020-12653
CVE-2020-12654
CVE-2020-12656
CVE-2020-15708
CVE-2020-1712
CVE-2020-1720
CVE-2020-25637
CVE-2020-2756
CVE-2020-2757
CVE-2020-2773
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
SUSE-SU-2017:2542-1
SUSE-SU-2018:0231-1
SUSE-SU-2019:1687-1
SUSE-SU-2019:2300-1
SUSE-SU-2019:3297-1
SUSE-SU-2020:0088-1
SUSE-SU-2020:0331-1
SUSE-SU-2020:0406-1
SUSE-SU-2020:0555-1
SUSE-SU-2020:1571-1
SUSE-SU-2020:1596-1
SUSE-SU-2020:3095-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.1 NonFree
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-common-60.7.2-lp151.2.7 is installed
  • OR MozillaThunderbird-translations-other-60.7.2-lp151.2.7 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 NonFree is installed
  • AND opera-67.0.3575.97-lp151.2.12 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • chromedriver-85.0.4183.69-lp152.2.20 is installed
  • OR chromium-85.0.4183.69-lp152.2.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • apache2-2.4.23-29.6 is installed
  • OR apache2-doc-2.4.23-29.6 is installed
  • OR apache2-example-pages-2.4.23-29.6 is installed
  • OR apache2-prefork-2.4.23-29.6 is installed
  • OR apache2-utils-2.4.23-29.6 is installed
  • OR apache2-worker-2.4.23-29.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libsystemd0-228-150.82 is installed
  • OR libsystemd0-32bit-228-150.82 is installed
  • OR libudev1-228-150.82 is installed
  • OR libudev1-32bit-228-150.82 is installed
  • OR systemd-228-150.82 is installed
  • OR systemd-32bit-228-150.82 is installed
  • OR systemd-bash-completion-228-150.82 is installed
  • OR systemd-sysvinit-228-150.82 is installed
  • OR udev-228-150.82 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libecpg6-10.12-1.18 is installed
  • OR libpq5-10.12-1.18 is installed
  • OR libpq5-32bit-10.12-1.18 is installed
  • OR postgresql10-10.12-1.18 is installed
  • OR postgresql10-contrib-10.12-1.18 is installed
  • OR postgresql10-docs-10.12-1.18 is installed
  • OR postgresql10-libs-10.12-1.18 is installed
  • OR postgresql10-plperl-10.12-1.18 is installed
  • OR postgresql10-plpython-10.12-1.18 is installed
  • OR postgresql10-pltcl-10.12-1.18 is installed
  • OR postgresql10-server-10.12-1.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kernel-default-4.4.180-94.121 is installed
  • OR kernel-default-base-4.4.180-94.121 is installed
  • OR kernel-default-devel-4.4.180-94.121 is installed
  • OR kernel-default-kgraft-4.4.180-94.121 is installed
  • OR kernel-default-man-4.4.180-94.121 is installed
  • OR kernel-devel-4.4.180-94.121 is installed
  • OR kernel-macros-4.4.180-94.121 is installed
  • OR kernel-source-4.4.180-94.121 is installed
  • OR kernel-syms-4.4.180-94.121 is installed
  • OR kgraft-patch-4_4_180-94_121-default-1-4.5 is installed
  • OR kgraft-patch-SLE12-SP3_Update_32-1-4.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • xen-4.9.4_04-3.53 is installed
  • OR xen-doc-html-4.9.4_04-3.53 is installed
  • OR xen-libs-4.9.4_04-3.53 is installed
  • OR xen-libs-32bit-4.9.4_04-3.53 is installed
  • OR xen-tools-4.9.4_04-3.53 is installed
  • OR xen-tools-domU-4.9.4_04-3.53 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libIlmImf-Imf_2_1-21-2.1.0-6.3 is installed
  • OR openexr-2.1.0-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • dovecot22-2.2.31-19.22 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.22 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.22 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND sudo-1.8.20p2-3.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-Django1-1.11.20-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-urllib3-1.22-5.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.20-3.6 is installed
  • BACK