Oval Definition:oval:org.opensuse.security:def:60886
Revision Date:2020-12-01Version:1
Title:Security update for libsolv, libzypp, zypper (Moderate)
Description:

This update for libsolv, libzypp and zypper fixes the following issues:

libsolv was updated to version 0.6.36 and fixes the following issues:

Security issues fixed:

- CVE-2018-20532: Fixed a NULL pointer dereference in testcase_read() (bsc#1120629). - CVE-2018-20533: Fixed a NULL pointer dereference in testcase_str2dep_complex() (bsc#1120630). - CVE-2018-20534: Fixed a NULL pointer dereference in pool_whatprovides() (bsc#1120631).

Non-security issues fixed:

- Made cleandeps jobs on patterns work (bsc#1137977). - Fixed an issue multiversion packages that obsolete their own name (bsc#1127155). - Keep consistent package name if there are multiple alternatives (bsc#1131823).

Fixes for libzypp:

- Fixes a bug where locking the kernel was not possible (bsc#1113296) - Fixes a file descriptor leak (bsc#1116995) - Will now run file conflict check on dry-run (best with download-only) (bsc#1140039)

Fixes for zypper:

- Fixes a bug where the wrong exit code was set when refreshing repos if --root was used (bsc#1134226) - Improved the displaying of locks (bsc#1112911) - Fixes an issue where `https` repository urls caused an error prompt to appear twice (bsc#1110542) - zypper will now always warn when no repositories are defined (bsc#1109893) - Fixes bash completion option detection (bsc#1049825)
Family:unixClass:patch
Status:Reference(s):1009254
1048278
1048339
1048352
1048387
1048790
1049825
1051510
1052577
1054017
1065729
1071853
1084878
1085449
1088004
1088009
1093311
1093536
1094462
1101644
1101645
1101651
1101656
1106812
1107874
1109845
1109893
1110542
1110850
1111319
1112911
1113296
1116995
1117665
1120629
1120630
1120631
1120644
1122191
1123161
1123959
1126140
1126141
1126192
1126195
1126196
1126197
1126198
1126201
1127155
1127400
1130840
1131107
1131823
1133140
1133818
1134226
1134399
1135966
1135967
1136261
1136424
1137586
1137865
1137977
1139073
1139751
1140039
1140671
1141013
1141054
1141853
1142023
1142265
1142458
1142857
1143045
1143048
1143187
1143189
1143191
1143333
1143797
1144123
1144903
1144920
1145092
1145477
1145521
1145920
1145922
1146042
1146163
1146285
1146351
1146361
1146378
1146391
1146413
1146425
1146512
1146514
1146516
1146519
1146524
1146526
1146529
1146540
1146543
1146547
1146550
1146584
1146589
1146874
1147022
1147122
1148394
1148938
1149083
1149376
1149522
1149527
1149555
1149612
1149652
1149813
1149955
1150025
1150112
1150452
1150457
1150465
1150727
1150942
1151347
1151350
1152457
1152685
1152782
1152788
1153108
1153158
1153161
1153238
1153263
1154103
1154372
1155131
1155671
1162002
1162423
1164910
1170011
1170618
1171078
1171189
1171191
1171220
1171732
1171988
1172186
1172402
1172453
1172458
1172775
1172999
1173274
1173280
1173658
1174091
1174115
1174462
1174543
1174701
CVE-2016-10906
CVE-2016-10906
CVE-2017-11103
CVE-2017-18379
CVE-2017-18509
CVE-2017-18551
CVE-2017-18551
CVE-2017-18595
CVE-2018-10811
CVE-2018-11784
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-12207
CVE-2018-1417
CVE-2018-14647
CVE-2018-16151
CVE-2018-16152
CVE-2018-17540
CVE-2018-20406
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
CVE-2018-20852
CVE-2018-20855
CVE-2018-20856
CVE-2018-20976
CVE-2018-20976
CVE-2018-2783
CVE-2018-2790
CVE-2018-2794
CVE-2018-2795
CVE-2018-2796
CVE-2018-2797
CVE-2018-2798
CVE-2018-2799
CVE-2018-2800
CVE-2018-2814
CVE-2018-2938
CVE-2018-2940
CVE-2018-2952
CVE-2018-2973
CVE-2018-3639
CVE-2018-5388
CVE-2019-0154
CVE-2019-0155
CVE-2019-10207
CVE-2019-10208
CVE-2019-10220
CVE-2019-11091
CVE-2019-11135
CVE-2019-11478
CVE-2019-11810
CVE-2019-12068
CVE-2019-13272
CVE-2019-13631
CVE-2019-13648
CVE-2019-14283
CVE-2019-14284
CVE-2019-14378
CVE-2019-14814
CVE-2019-14814
CVE-2019-14815
CVE-2019-14815
CVE-2019-14816
CVE-2019-14816
CVE-2019-14821
CVE-2019-14835
CVE-2019-14835
CVE-2019-15098
CVE-2019-15098
CVE-2019-15117
CVE-2019-15118
CVE-2019-15211
CVE-2019-15211
CVE-2019-15212
CVE-2019-15212
CVE-2019-15214
CVE-2019-15214
CVE-2019-15215
CVE-2019-15215
CVE-2019-15216
CVE-2019-15217
CVE-2019-15217
CVE-2019-15218
CVE-2019-15218
CVE-2019-15219
CVE-2019-15220
CVE-2019-15221
CVE-2019-15221
CVE-2019-15239
CVE-2019-15290
CVE-2019-15290
CVE-2019-15291
CVE-2019-15505
CVE-2019-15666
CVE-2019-15807
CVE-2019-15890
CVE-2019-15902
CVE-2019-15902
CVE-2019-15924
CVE-2019-15926
CVE-2019-15926
CVE-2019-15927
CVE-2019-15927
CVE-2019-16056
CVE-2019-16232
CVE-2019-16233
CVE-2019-16234
CVE-2019-16413
CVE-2019-16935
CVE-2019-16995
CVE-2019-17055
CVE-2019-17056
CVE-2019-17133
CVE-2019-17340
CVE-2019-17341
CVE-2019-17342
CVE-2019-17343
CVE-2019-17344
CVE-2019-17345
CVE-2019-17346
CVE-2019-17347
CVE-2019-17348
CVE-2019-17666
CVE-2019-20810
CVE-2019-20812
CVE-2019-20907
CVE-2019-3819
CVE-2019-3846
CVE-2019-5010
CVE-2019-9456
CVE-2019-9506
CVE-2019-9947
CVE-2020-0305
CVE-2020-10135
CVE-2020-10711
CVE-2020-10732
CVE-2020-10751
CVE-2020-10773
CVE-2020-12405
CVE-2020-12406
CVE-2020-12410
CVE-2020-12771
CVE-2020-13974
CVE-2020-14416
CVE-2020-14422
CVE-2020-8165
SUSE-SU-2017:2237-1
SUSE-SU-2018:1764-1
SUSE-SU-2018:3393-1
SUSE-SU-2019:2265-1
SUSE-SU-2019:2949-1
SUSE-SU-2019:3266-1
SUSE-SU-2020:1563-1
SUSE-SU-2020:2152-1
SUSE-SU-2020:2699-1
SUSE-SU-2020:2929-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.1 NonFree
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • gvim-8.0.1568-lp151.5.3 is installed
  • OR vim-8.0.1568-lp151.5.3 is installed
  • OR vim-data-8.0.1568-lp151.5.3 is installed
  • OR vim-data-common-8.0.1568-lp151.5.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 NonFree is installed
  • AND opera-68.0.3618.63-lp151.2.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libdcerpc-binding0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libdcerpc0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libdcerpc0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-krb5pac0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-krb5pac0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-nbt0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-nbt0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-standard0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr-standard0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libndr0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libnetapi0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libnetapi0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-credentials0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-credentials0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-errors0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-errors0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-hostconfig0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-hostconfig0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-passdb0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-passdb0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-util0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamba-util0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamdb0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsamdb0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbclient0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbclient0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbconf0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbconf0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbldap0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libsmbldap0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libtevent-util0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libtevent-util0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libwbclient0-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR libwbclient0-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-client-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-client-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-doc-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-libs-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-libs-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-winbind-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • OR samba-winbind-32bit-4.6.7+git.38.90b2cdb4f22-3.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • strongswan-5.1.3-26.13 is installed
  • OR strongswan-doc-5.1.3-26.13 is installed
  • OR strongswan-hmac-5.1.3-26.13 is installed
  • OR strongswan-ipsec-5.1.3-26.13 is installed
  • OR strongswan-libs0-5.1.3-26.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • xen-4.9.4_04-3.56 is installed
  • OR xen-doc-html-4.9.4_04-3.56 is installed
  • OR xen-libs-4.9.4_04-3.56 is installed
  • OR xen-libs-32bit-4.9.4_04-3.56 is installed
  • OR xen-tools-4.9.4_04-3.56 is installed
  • OR xen-tools-domU-4.9.4_04-3.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_100-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_27-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.181-27.26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.181-27.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND apache2-mod_perl-2.0.8-11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libsolv-0.6.36-2.27.19 is installed
  • OR libsolv-tools-0.6.36-2.27.19 is installed
  • OR libzypp-16.20.2-27.60 is installed
  • OR perl-solv-0.6.36-2.27.19 is installed
  • OR python-solv-0.6.36-2.27.19 is installed
  • OR zypper-1.13.54-18.40 is installed
  • OR zypper-log-1.13.54-18.40 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • ruby2.1-rubygem-rails-html-sanitizer-1.0.3-8.8 is installed
  • OR rubygem-rails-html-sanitizer-1.0.3-8.8 is installed
  • BACK