Oval Definition:oval:org.opensuse.security:def:69054
Revision Date:2021-01-22Version:1
Title:Security update for stunnel (Moderate)
Description:

This update for stunnel fixes the following issues:

Security issue fixed:

- The 'redirect' option was fixed to properly handle 'verifyChain = yes' (bsc#1177580).

Non-security issues fixed:

- Fix startup problem of the stunnel daemon (bsc#1178533)

- update to 5.57: * Security bugfixes * New features - New securityLevel configuration file option. - Support for modern PostgreSQL clients - TLS 1.3 configuration updated for better compatibility. * Bugfixes - Fixed a transfer() loop bug. - Fixed memory leaks on configuration reloading errors. - DH/ECDH initialization restored for client sections. - Delay startup with systemd until network is online. - A number of testing framework fixes and improvements.

- update to 5.56: - Various text files converted to Markdown format. - Support for realpath(3) implementations incompatible with POSIX.1-2008, such as 4.4BSD or Solaris. - Support for engines without PRNG seeding methods (thx to Petr Mikhalitsyn). - Retry unsuccessful port binding on configuration file reload. - Thread safety fixes in SSL_SESSION object handling. - Terminate clients on exit in the FORK threading model.

- Fixup stunnel.conf handling: * Remove old static openSUSE provided stunnel.conf. * Use upstream stunnel.conf and tailor it for openSUSE using sed. * Don't show README.openSUSE when installing.

- enable /etc/stunnel/conf.d - re-enable openssl.cnf
Family:unixClass:patch
Status:Reference(s):1140750
1172004
1177580
1178533
CVE-2019-13314
CVE-2020-12693
SUSE-SU-2020:2598-1
SUSE-SU-2021:0194-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise Module for High Performance Computing 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP2
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Storage 7
SUSE Manager Proxy 4.1
SUSE Manager Server 4.1
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
  • AND stunnel-5.57-3.5.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for High Performance Computing 15 SP1 is installed
  • AND Package Information
  • libpmi0-18.08.9-3.13 is installed
  • OR libslurm33-18.08.9-3.13 is installed
  • OR perl-slurm-18.08.9-3.13 is installed
  • OR slurm-18.08.9-3.13 is installed
  • OR slurm-auth-none-18.08.9-3.13 is installed
  • OR slurm-config-18.08.9-3.13 is installed
  • OR slurm-config-man-18.08.9-3.13 is installed
  • OR slurm-devel-18.08.9-3.13 is installed
  • OR slurm-doc-18.08.9-3.13 is installed
  • OR slurm-lua-18.08.9-3.13 is installed
  • OR slurm-munge-18.08.9-3.13 is installed
  • OR slurm-node-18.08.9-3.13 is installed
  • OR slurm-pam_slurm-18.08.9-3.13 is installed
  • OR slurm-plugins-18.08.9-3.13 is installed
  • OR slurm-slurmdbd-18.08.9-3.13 is installed
  • OR slurm-sql-18.08.9-3.13 is installed
  • OR slurm-sview-18.08.9-3.13 is installed
  • OR slurm-torque-18.08.9-3.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • python2-virt-bootstrap-1.0.0-5.3 is installed
  • OR virt-bootstrap-1.0.0-5.3 is installed
  • BACK