Oval Definition:oval:org.opensuse.security:def:61031
Revision Date:2020-12-01Version:1
Title:Security update for libsolv (Moderate)
Description:

This update for libsolv fixes the following issues:

This is a reissue of an existing libsolv update that also included libsolv-devel for LTSS products.

libsolv was updated to version 0.6.36 fixes the following issues:

Security issues fixed:

- CVE-2018-20532: Fixed a NULL pointer dereference in testcase_read() (bsc#1120629). - CVE-2018-20533: Fixed a NULL pointer dereference in testcase_str2dep_complex() (bsc#1120630). - CVE-2018-20534: Fixed a NULL pointer dereference in pool_whatprovides() (bsc#1120631).

Non-security issues fixed:

- Made cleandeps jobs on patterns work (bsc#1137977). - Fixed an issue multiversion packages that obsolete their own name (bsc#1127155). - Keep consistent package name if there are multiple alternatives (bsc#1131823).

Family:unixClass:patch
Status:Reference(s):1058058
1058565
1058622
1058624
1060427
1063008
1065066
1082858
1090099
1101410
1101412
1101654
1103040
1112852
1120629
1120630
1120631
1127155
1127223
1127308
1128574
1131823
1137977
1154824
1156353
1159478
1159479
1159482
1159486
1167068
1167231
1167890
1168930
1170558
1171186
1171363
1172466
1173576
1173613
1178387
682920
CVE-2009-5155
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163
CVE-2017-14746
CVE-2017-15275
CVE-2017-9798
CVE-2018-0360
CVE-2018-0361
CVE-2018-1000085
CVE-2018-10194
CVE-2018-12389
CVE-2018-12390
CVE-2018-12392
CVE-2018-12393
CVE-2018-12395
CVE-2018-12396
CVE-2018-12397
CVE-2018-14679
CVE-2018-20532
CVE-2018-20532
CVE-2018-20533
CVE-2018-20533
CVE-2018-20534
CVE-2018-20534
CVE-2019-18388
CVE-2019-18389
CVE-2019-18390
CVE-2019-18391
CVE-2019-9169
CVE-2020-0543
CVE-2020-0548
CVE-2020-0549
CVE-2020-12108
CVE-2020-12137
CVE-2020-12387
CVE-2020-12388
CVE-2020-12389
CVE-2020-12392
CVE-2020-12393
CVE-2020-12395
CVE-2020-12402
CVE-2020-12415
CVE-2020-12416
CVE-2020-12417
CVE-2020-12418
CVE-2020-12419
CVE-2020-12420
CVE-2020-12421
CVE-2020-12422
CVE-2020-12423
CVE-2020-12424
CVE-2020-12425
CVE-2020-12426
CVE-2020-25692
CVE-2020-5260
CVE-2020-5260
CVE-2020-6831
SUSE-SU-2017:2542-1
SUSE-SU-2017:3155-1
SUSE-SU-2018:1332-1
SUSE-SU-2018:2323-1
SUSE-SU-2018:3749-1
SUSE-SU-2020:0992-1
SUSE-SU-2020:1301-1
SUSE-SU-2020:1899-1
SUSE-SU-2020:2660-1
SUSE-SU-2020:3314-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-common-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-other-60.7.0-lp151.2.4 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • qemu-4.2.1-lp152.9.3 is installed
  • OR qemu-arm-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-alsa-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-pa-4.2.1-lp152.9.3 is installed
  • OR qemu-audio-sdl-4.2.1-lp152.9.3 is installed
  • OR qemu-block-curl-4.2.1-lp152.9.3 is installed
  • OR qemu-block-dmg-4.2.1-lp152.9.3 is installed
  • OR qemu-block-gluster-4.2.1-lp152.9.3 is installed
  • OR qemu-block-iscsi-4.2.1-lp152.9.3 is installed
  • OR qemu-block-nfs-4.2.1-lp152.9.3 is installed
  • OR qemu-block-rbd-4.2.1-lp152.9.3 is installed
  • OR qemu-block-ssh-4.2.1-lp152.9.3 is installed
  • OR qemu-extra-4.2.1-lp152.9.3 is installed
  • OR qemu-guest-agent-4.2.1-lp152.9.3 is installed
  • OR qemu-ipxe-1.0.0+-lp152.9.3 is installed
  • OR qemu-ksm-4.2.1-lp152.9.3 is installed
  • OR qemu-kvm-4.2.1-lp152.9.3 is installed
  • OR qemu-lang-4.2.1-lp152.9.3 is installed
  • OR qemu-linux-user-4.2.1-lp152.9.3 is installed
  • OR qemu-microvm-4.2.1-lp152.9.3 is installed
  • OR qemu-ppc-4.2.1-lp152.9.3 is installed
  • OR qemu-s390-4.2.1-lp152.9.3 is installed
  • OR qemu-seabios-1.12.1+-lp152.9.3 is installed
  • OR qemu-sgabios-8-lp152.9.3 is installed
  • OR qemu-testsuite-4.2.1-lp152.9.3 is installed
  • OR qemu-tools-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-curses-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-gtk-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-sdl-4.2.1-lp152.9.3 is installed
  • OR qemu-ui-spice-app-4.2.1-lp152.9.3 is installed
  • OR qemu-vgabios-1.12.1+-lp152.9.3 is installed
  • OR qemu-vhost-user-gpu-4.2.1-lp152.9.3 is installed
  • OR qemu-x86-4.2.1-lp152.9.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • apache2-2.4.23-29.6 is installed
  • OR apache2-doc-2.4.23-29.6 is installed
  • OR apache2-example-pages-2.4.23-29.6 is installed
  • OR apache2-prefork-2.4.23-29.6 is installed
  • OR apache2-utils-2.4.23-29.6 is installed
  • OR apache2-worker-2.4.23-29.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND mailman-2.1.17-3.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • libsolv-0.6.36-2.30 is installed
  • OR libsolv-devel-0.6.36-2.30 is installed
  • OR libsolv-tools-0.6.36-2.30 is installed
  • OR perl-solv-0.6.36-2.30 is installed
  • OR python-solv-0.6.36-2.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • MozillaFirefox-78.0.1-112.3 is installed
  • OR MozillaFirefox-branding-SLE-78-35.3 is installed
  • OR MozillaFirefox-devel-78.0.1-112.3 is installed
  • OR MozillaFirefox-translations-common-78.0.1-112.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • glibc-2.22-62.22 is installed
  • OR glibc-32bit-2.22-62.22 is installed
  • OR glibc-devel-2.22-62.22 is installed
  • OR glibc-devel-32bit-2.22-62.22 is installed
  • OR glibc-html-2.22-62.22 is installed
  • OR glibc-i18ndata-2.22-62.22 is installed
  • OR glibc-info-2.22-62.22 is installed
  • OR glibc-locale-2.22-62.22 is installed
  • OR glibc-locale-32bit-2.22-62.22 is installed
  • OR glibc-profile-2.22-62.22 is installed
  • OR glibc-profile-32bit-2.22-62.22 is installed
  • OR nscd-2.22-62.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • automake-1.13.4-6 is installed
  • OR m4-1.4.16-15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • MozillaFirefox-78.1.0-112.8 is installed
  • OR MozillaFirefox-devel-78.1.0-112.8 is installed
  • OR MozillaFirefox-translations-common-78.1.0-112.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • xorg-x11-server-1.19.6-4.8 is installed
  • OR xorg-x11-server-extra-1.19.6-4.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • grub2-2.02-12.31 is installed
  • OR grub2-i386-pc-2.02-12.31 is installed
  • OR grub2-snapper-plugin-2.02-12.31 is installed
  • OR grub2-systemd-sleep-plugin-2.02-12.31 is installed
  • OR grub2-x86_64-efi-2.02-12.31 is installed
  • OR grub2-x86_64-xen-2.02-12.31 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libsolv-0.6.36-2.30 is installed
  • OR libsolv-devel-0.6.36-2.30 is installed
  • OR libsolv-tools-0.6.36-2.30 is installed
  • OR perl-solv-0.6.36-2.30 is installed
  • OR python-solv-0.6.36-2.30 is installed
  • BACK