Revision Date: | 2021-09-29 | Version: | 1 |
Title: | Security update for rabbitmq-server (Moderate) |
Description: |
This update for rabbitmq-server fixes the following issues:
- CVE-2021-32718: Fixed improper neutralization of script-related HTML tags in a web page (basic XSS) in management UI (bsc#1187818). - CVE-2021-32719: Fixed improper neutralization of script-related HTML tags in a web page (basic XSS) in federation management plugin (bsc#1187819). - CVE-2021-22116: Fixed improper input validation may lead to DoS (bsc#1186203).
- Use /run instead of /var/run in tmpfiles.d configuration (bsc#1185075).
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | 1185075 1186203 1187818 1187819 CVE-2021-22116 CVE-2021-32718 CVE-2021-32719 SUSE-SU-2021:3254-1
|
Platform(s): | SUSE Linux Enterprise High Performance Computing 15 SP2 SUSE Linux Enterprise Module for Server Applications 15 SP2 SUSE Linux Enterprise Server 15 SP2 SUSE Linux Enterprise Server for SAP Applications 15 SP2 SUSE Linux Enterprise Storage 7 SUSE Manager Proxy 4.1 SUSE Manager Server 4.1
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Module for Server Applications 15 SP2 is installed AND Package Information
erlang-rabbitmq-client-3.8.3-3.3.4 is installed
OR rabbitmq-server-3.8.3-3.3.4 is installed
OR rabbitmq-server-plugins-3.8.3-3.3.4 is installed
|