Revision Date: | 2021-08-23 | Version: | 1 |
Title: | Security update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3 (Moderate) |
Description: |
This patch updates the Python AWS SDK stack in SLE 15:
General:
# aws-cli
- Version updated to upstream release v1.19.9 For a detailed list of all changes, please refer to the changelog file of this package.
# python-boto3
- Version updated to upstream release 1.17.9 For a detailed list of all changes, please refer to the changelog file of this package.
# python-botocore
- Version updated to upstream release 1.20.9 For a detailed list of all changes, please refer to the changelog file of this package.
# python-urllib3
- Version updated to upstream release 1.25.10 For a detailed list of all changes, please refer to the changelog file of this package.
# python-service_identity
- Added this new package to resolve runtime dependencies for other packages. Version: 18.1.0
# python-trustme
- Added this new package to resolve runtime dependencies for other packages. Version: 0.6.0
Security fixes:
# python-urllib3: - CVE-2020-26137: urllib3 before 1.25.9 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of putrequest() (bsc#1177120)
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1102408 1138715 1138746 1160968 1169511 1171352 1172277 1176389 1177120 1177914 1182421 1182422 CVE-2019-2949 CVE-2020-15999 CVE-2020-26137 CVE-2020-2654 CVE-2020-2754 CVE-2020-2755 CVE-2020-2756 CVE-2020-2757 CVE-2020-2781 CVE-2020-2800 CVE-2020-2803 CVE-2020-2805 CVE-2020-2830 SUSE-SU-2021:2817-1
|
Platform(s): | SUSE Linux Enterprise Desktop 15 SP3 SUSE Linux Enterprise High Performance Computing 15 SP3 SUSE Linux Enterprise Module for Basesystem 15 SP3 SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 SUSE Linux Enterprise Server 15 SP3 SUSE Linux Enterprise Server for SAP Applications 15 SP3 SUSE Manager Proxy 4.2 SUSE Manager Server 4.2
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed AND Package Information
java-1_8_0-ibm-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-32bit-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-demo-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-devel-32bit-1.8.0_sr6.10-3.38 is installed
OR java-1_8_0-ibm-src-1.8.0_sr6.10-3.38 is installed
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP3 is installed
AND Package Information
python3-asn1crypto-0.24.0-3.2.1 is installed
OR python3-boto3-1.17.9-19.1 is installed
OR python3-botocore-1.20.9-33.1 is installed
OR python3-cffi-1.13.2-3.2.5 is installed
OR python3-cryptography-2.8-10.1 is installed
OR python3-pyasn1-0.4.2-3.2.1 is installed
OR python3-pycparser-2.17-3.2.1 is installed
|