Revision Date: | 2021-06-03 | Version: | 1 |
Title: | Security update for avahi (Important) |
Description: |
This update for avahi fixes the following issues:
- CVE-2021-3468: avoid infinite loop by handling HUP event in client_work (bsc#1184521). - CVE-2021-26720: drop privileges when invoking avahi-daemon-check-dns.sh (bsc#1180827) - Update avahi-daemon-check-dns.sh from Debian. Our previous version relied on ifconfig, route, and init.d. - Add sudo to requires: used to drop privileges.
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1141844 1174117 1174121 1180827 1184521 CVE-2019-13616 CVE-2020-13934 CVE-2020-13935 CVE-2021-26720 CVE-2021-3468 SUSE-SU-2020:3261-1
|
Platform(s): | SUSE Linux Enterprise Module for Desktop Applications 15 SP2 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP3
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Desktop Applications 15 SP2 is installed AND Package Information
SDL-1.2.15-3.12 is installed
OR libSDL-1_2-0-1.2.15-3.12 is installed
OR libSDL-devel-1.2.15-3.12 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
AND Package Information
tomcat-9.0.36-3.6 is installed
OR tomcat-docs-webapp-9.0.36-3.6 is installed
OR tomcat-embed-9.0.36-3.6 is installed
OR tomcat-javadoc-9.0.36-3.6 is installed
OR tomcat-jsvc-9.0.36-3.6 is installed
|