Oval Definition:oval:org.opensuse.security:def:63859
Revision Date:2020-12-01Version:1
Title:Security update for systemd (Important)
Description:

This update for systemd fixes the following issues:

Security vulnerability fixed:

- CVE-2019-6454: Fixed a crash of PID1 by sending specially crafted D-BUS message on the system bus by an unprivileged user (bsc#1125352)

Other bug fixes and changes:

- journal-remote: set a limit on the number of fields in a message - journal-remote: verify entry length from header - journald: set a limit on the number of fields (1k) - journald: do not store the iovec entry for process commandline on stack - core: include Found state in device dumps - device: fix serialization and deserialization of DeviceFound - fix path in btrfs rule (#6844) - assemble multidevice btrfs volumes without external tools (#6607) (bsc#1117025) - Update systemd-system.conf.xml (bsc#1122000) - units: inform user that the default target is started after exiting from rescue or emergency mode - manager: don't skip sigchld handler for main and control pid for services (#3738) - core: Add helper functions unit_{main, control}_pid - manager: Fixing a debug printf formatting mistake (#3640) - manager: Only invoke a single sigchld per unit within a cleanup cycle (bsc#1117382) - core: update invoke_sigchld_event() to handle NULL ->sigchld_event() - sd-event: expose the event loop iteration counter via sd_event_get_iteration() (#3631) - unit: rework a bit how we keep the service fdstore from being destroyed during service restart (bsc#1122344) - core: when restarting services, don't close fds - cryptsetup: Add dependency on loopback setup to generated units - journal-gateway: use localStorage['cursor'] only when it has valid value - journal-gateway: explicitly declare local variables - analyze: actually select longest activated-time of services - sd-bus: fix implicit downcast of bitfield reported by LGTM - core: free lines after reading them (bsc#1123892) - pam_systemd: reword message about not creating a session (bsc#1111498) - pam_systemd: suppress LOG_DEBUG log messages if debugging is off (bsc#1111498) - main: improve RLIMIT_NOFILE handling (#5795) (bsc#1120658) - sd-bus: if we receive an invalid dbus message, ignore and proceeed - automount: don't pass non-blocking pipe to kernel. - units: make sure initrd-cleanup.service terminates before switching to rootfs (bsc#1123333) - units: add Wants=initrd-cleanup.service to initrd-switch-root.target (#4345) (bsc#1123333)
Family:unixClass:patch
Status:Reference(s):1068664
1089524
1111498
1117025
1117382
1120658
1122000
1122344
1123333
1123892
1125352
1130360
1131233
1131237
1131239
1131241
1131245
1134078
1136572
1138572
1143032
1159208
1159623
1172031
1172225
1173376
1173377
1173378
1173380
1173749
1174117
1174121
1174157
1175259
1177780
1177781
1177782
1177783
CVE-2012-0876
CVE-2016-0718
CVE-2016-4472
CVE-2016-9063
CVE-2017-1000158
CVE-2017-9233
CVE-2019-0196
CVE-2019-0197
CVE-2019-0211
CVE-2019-0217
CVE-2019-0220
CVE-2019-12816
CVE-2019-14274
CVE-2019-17639
CVE-2019-20807
CVE-2019-6454
CVE-2019-6470
CVE-2019-9917
CVE-2020-13934
CVE-2020-13935
CVE-2020-14577
CVE-2020-14578
CVE-2020-14579
CVE-2020-14583
CVE-2020-14593
CVE-2020-14621
CVE-2020-15563
CVE-2020-15565
CVE-2020-15566
CVE-2020-15567
CVE-2020-25650
CVE-2020-25651
CVE-2020-25652
CVE-2020-25653
openSUSE-SU-2019:1775-1
openSUSE-SU-2019:2341-1
openSUSE-SU-2020:0382-1
openSUSE-SU-2020:1111-1
SUSE-SU-2019:0428-1
SUSE-SU-2019:0878-1
SUSE-SU-2020:0497-1
SUSE-SU-2020:1550-1
SUSE-SU-2020:2482-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • znc-1.7.4-lp151.2.3 is installed
  • OR znc-devel-1.7.4-lp151.2.3 is installed
  • OR znc-lang-1.7.4-lp151.2.3 is installed
  • OR znc-perl-1.7.4-lp151.2.3 is installed
  • OR znc-python3-1.7.4-lp151.2.3 is installed
  • OR znc-tcl-1.7.4-lp151.2.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • tomcat-9.0.36-lp152.2.4 is installed
  • OR tomcat-admin-webapps-9.0.36-lp152.2.4 is installed
  • OR tomcat-docs-webapp-9.0.36-lp152.2.4 is installed
  • OR tomcat-el-3_0-api-9.0.36-lp152.2.4 is installed
  • OR tomcat-embed-9.0.36-lp152.2.4 is installed
  • OR tomcat-javadoc-9.0.36-lp152.2.4 is installed
  • OR tomcat-jsp-2_3-api-9.0.36-lp152.2.4 is installed
  • OR tomcat-jsvc-9.0.36-lp152.2.4 is installed
  • OR tomcat-lib-9.0.36-lp152.2.4 is installed
  • OR tomcat-servlet-4_0-api-9.0.36-lp152.2.4 is installed
  • OR tomcat-webapps-9.0.36-lp152.2.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libsystemd0-228-150.63 is installed
  • OR libsystemd0-32bit-228-150.63 is installed
  • OR libudev1-228-150.63 is installed
  • OR libudev1-32bit-228-150.63 is installed
  • OR systemd-228-150.63 is installed
  • OR systemd-32bit-228-150.63 is installed
  • OR systemd-bash-completion-228-150.63 is installed
  • OR systemd-sysvinit-228-150.63 is installed
  • OR udev-228-150.63 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • xen-4.11.4_04-2.30 is installed
  • OR xen-doc-html-4.11.4_04-2.30 is installed
  • OR xen-libs-4.11.4_04-2.30 is installed
  • OR xen-libs-32bit-4.11.4_04-2.30 is installed
  • OR xen-tools-4.11.4_04-2.30 is installed
  • OR xen-tools-domU-4.11.4_04-2.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.70-38.56 is installed
  • BACK