Oval Definition:oval:org.opensuse.security:def:67125
Revision Date:2021-06-03Version:1
Title:Security update for avahi (Important)
Description:

This update for avahi fixes the following issues:

- CVE-2021-3468: avoid infinite loop by handling HUP event in client_work (bsc#1184521). - CVE-2021-26720: drop privileges when invoking avahi-daemon-check-dns.sh (bsc#1180827) - Update avahi-daemon-check-dns.sh from Debian. Our previous version relied on ifconfig, route, and init.d. - Add sudo to requires: used to drop privileges.
Family:unixClass:patch
Status:Reference(s):1141844
1174117
1174121
1180827
1184521
CVE-2019-13616
CVE-2020-13934
CVE-2020-13935
CVE-2021-26720
CVE-2021-3468
SUSE-SU-2020:3261-1
Platform(s):SUSE Linux Enterprise Module for Desktop Applications 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP2 is installed
  • AND Package Information
  • SDL-1.2.15-3.12 is installed
  • OR libSDL-1_2-0-1.2.15-3.12 is installed
  • OR libSDL-devel-1.2.15-3.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • tomcat-9.0.36-3.6 is installed
  • OR tomcat-docs-webapp-9.0.36-3.6 is installed
  • OR tomcat-embed-9.0.36-3.6 is installed
  • OR tomcat-javadoc-9.0.36-3.6 is installed
  • OR tomcat-jsvc-9.0.36-3.6 is installed
  • BACK