Oval Definition:oval:org.opensuse.security:def:68549
Revision Date:2021-02-23Version:1
Title:Security update for avahi (Moderate)
Description:

This update for avahi fixes the following issues:

- CVE-2021-26720: drop privileges when invoking avahi-daemon-check-dns.sh (bsc#1180827) - Update avahi-daemon-check-dns.sh from Debian. Our previous version relied on ifconfig, route, and init.d. - Add sudo to requires: used to drop privileges.
Family:unixClass:patch
Status:Reference(s):1160611
1160612
1160613
1160614
1160615
1174633
1174635
1174638
1180827
CVE-2019-2126
CVE-2019-9232
CVE-2019-9325
CVE-2019-9371
CVE-2019-9433
CVE-2020-14345
CVE-2020-14346
CVE-2020-14347
CVE-2021-26720
SUSE-SU-2020:0143-1
SUSE-SU-2020:2241-1
SUSE-SU-2021:0551-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Development Tools 15 SP1
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • libvpx-1.6.1-6.3 is installed
  • OR libvpx-devel-1.6.1-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP1 is installed
  • AND Package Information
  • xorg-x11-server-1.20.3-14.5 is installed
  • OR xorg-x11-server-sdk-1.20.3-14.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP2 is installed
  • AND python3-avahi-0.7-3.6.1 is installed
  • BACK