Oval Definition:oval:org.opensuse.security:def:70170
Revision Date:2020-12-10Version:1
Title:Security update for gcc7 (Moderate)
Description:

This update for gcc7 fixes the following issues:

- CVE-2020-13844: Added mitigation for aarch64 Straight Line Speculation issue (bsc#1172798) - Enable fortran for the nvptx offload compiler. - Update README.First-for.SuSE.packagers - avoid assembler errors with AVX512 gather and scatter instructions when using -masm=intel. - Backport the aarch64 -moutline-atomics feature and accumulated fixes but not its default enabling. [jsc#SLE-12209, bsc#1167939] - Fixed 32bit libgnat.so link. [bsc#1178675] - Fixed memcpy miscompilation on aarch64. [bsc#1178624, bsc#1178577] - Fixed debug line info for try/catch. [bsc#1178614] - Remove -mbranch-protection=standard (aarch64 flag) when gcc7 is used to build gcc7 (ie when ada is enabled) - Fixed corruption of pass private ->aux via DF. [gcc#94148] - Fixed debug information issue with inlined functions and passed by reference arguments. [gcc#93888] - Fixed binutils release date detection issue. - Fixed register allocation issue with exception handling code on s390x. [bsc#1161913] - Fixed miscompilation of some atomic code on aarch64. [bsc#1150164]
Family:unixClass:patch
Status:Reference(s):1150164
1161913
1167939
1172798
1178577
1178614
1178624
1178675
CVE-2014-9114
CVE-2015-5218
CVE-2016-2779
CVE-2016-5011
CVE-2017-2616
CVE-2018-11307
CVE-2018-12022
CVE-2018-12023
CVE-2018-14718
CVE-2018-14721
CVE-2018-19360
CVE-2018-19361
CVE-2018-19362
CVE-2018-7489
CVE-2018-7738
CVE-2019-12086
CVE-2019-12384
CVE-2019-12814
CVE-2019-14379
CVE-2019-14439
CVE-2019-14540
CVE-2019-14893
CVE-2019-16942
CVE-2019-16943
CVE-2019-17267
CVE-2019-17531
CVE-2019-20330
CVE-2020-13844
SUSE-SU-2020:3749-1
Platform(s):SUSE Linux Enterprise Module for Development Tools 15 SP2
SUSE Linux Enterprise Module for Server Applications 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 SP2 is installed
  • AND jackson-databind-2.10.2-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed
  • AND uuidd-2.33.1-4.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • cpp7-7.5.0+r278197-4.19.2 is installed
  • OR cross-nvptx-gcc7-7.5.0+r278197-4.19.2 is installed
  • OR cross-nvptx-newlib7-devel-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-32bit-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-ada-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-c++-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-c++-32bit-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-fortran-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-fortran-32bit-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-info-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-locale-7.5.0+r278197-4.19.2 is installed
  • OR gcc7-objc-7.5.0+r278197-4.19.2 is installed
  • OR libada7-7.5.0+r278197-4.19.2 is installed
  • OR libasan4-7.5.0+r278197-4.19.2 is installed
  • OR libasan4-32bit-7.5.0+r278197-4.19.2 is installed
  • OR libcilkrts5-7.5.0+r278197-4.19.2 is installed
  • OR libcilkrts5-32bit-7.5.0+r278197-4.19.2 is installed
  • OR libgfortran4-7.5.0+r278197-4.19.2 is installed
  • OR libgfortran4-32bit-7.5.0+r278197-4.19.2 is installed
  • OR libstdc++6-devel-gcc7-7.5.0+r278197-4.19.2 is installed
  • OR libstdc++6-devel-gcc7-32bit-7.5.0+r278197-4.19.2 is installed
  • OR libubsan0-7.5.0+r278197-4.19.2 is installed
  • OR libubsan0-32bit-7.5.0+r278197-4.19.2 is installed
  • BACK