Oval Definition:oval:org.opensuse.security:def:93262
Revision Date:2021-08-23Version:1
Title: (Moderate)
Description:

This patch updates the Python AWS SDK stack in SLE 15:

General:

# aws-cli

- Version updated to upstream release v1.19.9 For a detailed list of all changes, please refer to the changelog file of this package.

# python-boto3

- Version updated to upstream release 1.17.9 For a detailed list of all changes, please refer to the changelog file of this package.

# python-botocore

- Version updated to upstream release 1.20.9 For a detailed list of all changes, please refer to the changelog file of this package.

# python-urllib3

- Version updated to upstream release 1.25.10 For a detailed list of all changes, please refer to the changelog file of this package.

# python-service_identity

- Added this new package to resolve runtime dependencies for other packages. Version: 18.1.0

# python-trustme

- Added this new package to resolve runtime dependencies for other packages. Version: 0.6.0

Security fixes:

# python-urllib3: - CVE-2020-26137: urllib3 before 1.25.9 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of putrequest() (bsc#1177120)
Family:unixClass:patch
Status:Reference(s):1102408
1138715
1138746
1176389
1176681
1177120
1182421
1182422
1185591
1186290
1187364
1187365
1187366
1187367
1187499
1187529
1187538
1187539
CVE-2020-25085
CVE-2020-26137
CVE-2021-3582
CVE-2021-3592
CVE-2021-3593
CVE-2021-3594
CVE-2021-3595
CVE-2021-3607
CVE-2021-3608
CVE-2021-3611
SUSE-SU-2021:2591-1
Platform(s):Image SLES15-SP4-Manager-Proxy-4-3-BYOS-Azure
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • Image SLES15-SP4-Manager-Proxy-4-3-BYOS-Azure is installed
  • AND Package Information
  • python3-asn1crypto-0.24.0-3.2.1 is installed
  • OR python3-cffi-1.13.2-3.2.5 is installed
  • OR python3-pyasn1-0.4.2-3.2.1 is installed
  • OR python3-pycparser-2.17-3.2.1 is installed
  • Definition Synopsis
  • SUSE Manager Server 4.0 is installed
  • AND Package Information
  • qemu-3.1.1.1-9.30.2 is installed
  • OR qemu-audio-alsa-3.1.1.1-9.30.2 is installed
  • OR qemu-audio-oss-3.1.1.1-9.30.2 is installed
  • OR qemu-audio-pa-3.1.1.1-9.30.2 is installed
  • OR qemu-block-curl-3.1.1.1-9.30.2 is installed
  • OR qemu-block-iscsi-3.1.1.1-9.30.2 is installed
  • OR qemu-block-rbd-3.1.1.1-9.30.2 is installed
  • OR qemu-block-ssh-3.1.1.1-9.30.2 is installed
  • OR qemu-guest-agent-3.1.1.1-9.30.2 is installed
  • OR qemu-ipxe-1.0.0+-9.30.2 is installed
  • OR qemu-kvm-3.1.1.1-9.30.2 is installed
  • OR qemu-lang-3.1.1.1-9.30.2 is installed
  • OR qemu-ppc-3.1.1.1-9.30.2 is installed
  • OR qemu-s390-3.1.1.1-9.30.2 is installed
  • OR qemu-seabios-1.12.0_0_ga698c89-9.30.2 is installed
  • OR qemu-sgabios-8-9.30.2 is installed
  • OR qemu-tools-3.1.1.1-9.30.2 is installed
  • OR qemu-ui-curses-3.1.1.1-9.30.2 is installed
  • OR qemu-ui-gtk-3.1.1.1-9.30.2 is installed
  • OR qemu-vgabios-1.12.0_0_ga698c89-9.30.2 is installed
  • OR qemu-x86-3.1.1.1-9.30.2 is installed
  • BACK