Oval Definition:oval:org.opensuse.security:def:63689
Revision Date:2020-12-01Version:1
Title:Security update for openssh (Important)
Description:

This update for openssh fixes the following issues:

Security issue fixed:

- CVE-2018-20685: Fixed an issue where scp client allows remote SSH servers to bypass intended access restrictions (bsc#1121571) - CVE-2019-6109: Fixed an issue where the scp client would allow malicious remote SSH servers to manipulate terminal output via the object name, e.g. by inserting ANSI escape sequences (bsc#1121816) - CVE-2019-6110: Fixed an issue where the scp client would allow malicious remote SSH servers to manipulate stderr output, e.g. by inserting ANSI escape sequences (bsc#1121818) - CVE-2019-6111: Fixed an issue where the scp client would allow malicious remote SSH servers to execute directory traversal attacks and overwrite files (bsc#1121821)
Family:unixClass:patch
Status:Reference(s):1042781
1061599
1085003
1107116
1107121
1120629
1120630
1120631
1121571
1121816
1121818
1121821
1125535
1127155
1131823
1135715
1137001
1137595
1137977
1139073
1141035
1148931
1149792
1155988
1159352
1172405
1173274
1175686
941922
CVE-2015-5186
CVE-2018-16428
CVE-2018-16429
CVE-2018-20532
CVE-2018-20533
CVE-2018-20534
CVE-2018-20685
CVE-2019-11135
CVE-2019-11139
CVE-2019-11703
CVE-2019-11704
CVE-2019-11705
CVE-2019-11706
CVE-2019-12450
CVE-2019-16775
CVE-2019-16776
CVE-2019-16777
CVE-2019-6109
CVE-2019-6110
CVE-2019-6111
CVE-2019-8595
CVE-2019-8607
CVE-2019-8615
CVE-2019-8644
CVE-2019-8649
CVE-2019-8658
CVE-2019-8666
CVE-2019-8669
CVE-2019-8671
CVE-2019-8672
CVE-2019-8673
CVE-2019-8676
CVE-2019-8677
CVE-2019-8678
CVE-2019-8679
CVE-2019-8680
CVE-2019-8681
CVE-2019-8683
CVE-2019-8684
CVE-2019-8686
CVE-2019-8687
CVE-2019-8688
CVE-2019-8689
CVE-2019-8690
CVE-2020-14422
CVE-2020-15663
CVE-2020-15664
CVE-2020-15669
CVE-2020-8022
openSUSE-SU-2019:1583-1
openSUSE-SU-2020:0059-1
openSUSE-SU-2020:1002-1
openSUSE-SU-2020:1383-1
SUSE-SU-2019:0132-1
SUSE-SU-2019:0563-1
SUSE-SU-2019:1722-1
SUSE-SU-2019:2345-1
SUSE-SU-2019:2988-1
SUSE-SU-2020:1788-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • MozillaThunderbird-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-buildsymbols-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-common-60.7.0-lp151.2.4 is installed
  • OR MozillaThunderbird-translations-other-60.7.0-lp151.2.4 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND python-ipaddress-1.0.18-lp152.4.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • openssh-7.2p2-74.35 is installed
  • OR openssh-askpass-gnome-7.2p2-74.35 is installed
  • OR openssh-fips-7.2p2-74.35 is installed
  • OR openssh-helpers-7.2p2-74.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • libsolv-0.6.36-2.30 is installed
  • OR libsolv-devel-0.6.36-2.30 is installed
  • OR libsolv-tools-0.6.36-2.30 is installed
  • OR perl-solv-0.6.36-2.30 is installed
  • OR python-solv-0.6.36-2.30 is installed
  • BACK