Vulnerability Name:

CVE-2017-14695 (CCN-134078)

Assigned:2017-10-11
Published:2017-10-11
Updated:2017-11-14
Summary:Directory traversal vulnerability in minion id validation in SaltStack Salt before 2016.3.8, 2016.11.x before 2016.11.8, and 2017.7.x before 2017.7.2 allows remote minions with incorrect credentials to authenticate to a master via a crafted minion ID.
Note: this vulnerability exists because of an incomplete fix for CVE-2017-12791.
CVSS v3 Severity:9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
8.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
4.6 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): None
Availibility (A): None
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
Vulnerability Type:CWE-22
Vulnerability Consequences:Obtain Information
References:Source: MITRE
Type: CNA
CVE-2017-14695

Source: SUSE
Type: Issue Tracking, Release Notes, Third Party Advisory
openSUSE-SU-2017:2822

Source: SUSE
Type: Issue Tracking, Release Notes, Third Party Advisory
openSUSE-SU-2017:2824

Source: CCN
Type: Red Hat Bugzilla – Bug 1500748
(CVE-2017-14695) CVE-2017-14695 salt: Directory traversal in minion id validation

Source: CONFIRM
Type: Issue Tracking, Release Notes, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1500748

Source: CONFIRM
Type: Issue Tracking, Release Notes, Vendor Advisory
https://docs.saltstack.com/en/latest/topics/releases/2016.11.8.html

Source: CONFIRM
Type: Issue Tracking, Release Notes, Vendor Advisory
https://docs.saltstack.com/en/latest/topics/releases/2016.3.8.html

Source: CONFIRM
Type: Issue Tracking, Release Notes, Vendor Advisory
https://docs.saltstack.com/en/latest/topics/releases/2017.7.2.html

Source: XF
Type: UNKNOWN
saltstack-cve201714695-dir-traversal(134078)

Source: CCN
Type: salt GIT Repository
Dont allow path separators in minion ID

Source: CONFIRM
Type: Issue Tracking, Patch, Third Party Advisory
https://github.com/saltstack/salt/commit/80d90307b07b3703428ecbb7c8bb468e28a9ae6d

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2017-14695

Vulnerable Configuration:Configuration 1:
  • cpe:/a:saltstack:salt:*:*:*:*:*:*:*:* (Version <= 2016.3.7)
  • OR cpe:/a:saltstack:salt:2016.11:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.0:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.1:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.1:rc1:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.1:rc2:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.2:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.3:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.4:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.5:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.6:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.7:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2017.7.0:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2017.7.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2017.7.1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:saltstack:salt:2016.3.7:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2016.11.7:*:*:*:*:*:*:*
  • OR cpe:/a:saltstack:salt:2017.7.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201714695
    V
    CVE-2017-14695
    2023-06-22
    oval:org.opensuse.security:def:8092
    P
    salt-transactional-update-3005.1-150500.2.13 on GA media (Moderate)
    2023-06-20
    oval:org.opensuse.security:def:7784
    P
    python3-salt-3005.1-150500.2.13 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:622
    P
    Security update for bind (Important) (in QA)
    2022-09-23
    oval:org.opensuse.security:def:553
    P
    Security update for ImageMagick (Moderate)
    2022-07-06
    oval:org.opensuse.security:def:3522
    P
    hardlink-1.0-6.38 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3537
    P
    kdump-0.8.16-9.2 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3181
    P
    libgssglue1-0.4-3.76 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:95167
    P
    salt-transactional-update-3004-150400.6.16 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94811
    P
    python3-salt-3004-150400.6.16 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95152
    P
    salt-api-3004-150400.6.16 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:291
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:259
    P
    pam_yubico-2.26-1.7 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:94243
    P
    (Moderate)
    2022-06-02
    oval:org.opensuse.security:def:1069
    P
    Security update for ImageMagick (Moderate)
    2022-05-20
    oval:org.opensuse.security:def:1656
    P
    Security update for mozilla-nss (Important)
    2022-04-11
    oval:org.opensuse.security:def:967
    P
    Security update for python-libxml2-python (Important)
    2022-03-10
    oval:org.opensuse.security:def:1535
    P
    Security update for php7 (Moderate)
    2022-03-03
    oval:org.opensuse.security:def:877
    P
    Security update for bind (Moderate)
    2022-01-21
    oval:org.opensuse.security:def:113236
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:69969
    P
    Security update for python3 (Moderate)
    2021-12-23
    oval:org.opensuse.security:def:39198
    P
    Security update for log4j (Important)
    2021-12-17
    oval:org.opensuse.security:def:32225
    P
    Security update for postgresql10 (Important)
    2021-11-22
    oval:org.opensuse.security:def:32214
    P
    Security update for pcre (Moderate)
    2021-11-10
    oval:org.opensuse.security:def:64609
    P
    Security update for webkit2gtk3 (Important)
    2021-11-03
    oval:org.opensuse.security:def:1488
    P
    Security update for apache2 (Important)
    2021-10-26
    oval:org.opensuse.security:def:39242
    P
    Security update for ncurses (Moderate)
    2021-10-18
    oval:org.opensuse.security:def:67800
    P
    Security update for the Linux Kernel (Live Patch 21 for SLE 15) (Important)
    2021-10-14
    oval:org.opensuse.security:def:1591
    P
    Security update for the Linux Kernel (Important)
    2021-10-13
    oval:org.opensuse.security:def:1220
    P
    Security update for the Linux Kernel (Important)
    2021-10-12
    oval:org.opensuse.security:def:106653
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:71331
    P
    libvpx4-1.6.1-4.16 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:2147
    P
    salt-api-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71396
    P
    socat-1.7.3.2-4.10 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71383
    P
    python3-salt-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:89797
    P
    python3-salt-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61642
    P
    python3-salt-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:103452
    P
    python3-salt-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:96762
    P
    python3-salt-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:63236
    P
    salt-api-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:90071
    P
    salt-api-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:103726
    P
    salt-api-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71283
    P
    libneon-devel-0.30.2-2.15 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:97036
    P
    salt-api-2019.2.0-4.4 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71153
    P
    c-ares-devel-1.14.0-1.17 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:66912
    P
    Security update for 389-ds (Moderate)
    2021-08-27
    oval:org.opensuse.security:def:70268
    P
    Security update for MozillaFirefox (Important)
    2021-08-17
    oval:org.opensuse.security:def:64744
    P
    Security update for libsndfile (Critical)
    2021-08-17
    oval:org.opensuse.security:def:68043
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15 SP1) (Important)
    2021-08-17
    oval:org.opensuse.security:def:47503
    P
    squid-3.5.21-25.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47919
    P
    xalan-j2-2.7.0-264.133 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13874
    P
    libXi6-1.7.4-9.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14326
    P
    mipv6d-2.0.2.umip.0.4-19.63 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47906
    P
    tpm2.0-tools-3.1.1-1.16 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14024
    P
    res-signingkeys-3.0.18-26.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14034
    P
    squashfs-4.3-6.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47333
    P
    libass5-0.10.2-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14038
    P
    stunnel-5.00-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14397
    P
    tpm2.0-tools-2.0.0-2.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47535
    P
    xorg-x11-7.6_1-14.17 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13857
    P
    kbd-1.15.5-8.7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14303
    P
    libupsclient1-2.7.1-4.55 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48135
    P
    libjpeg62-32bit-62.2.0-31.14.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47241
    P
    dnsmasq-2.76-17.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48235
    P
    logrotate-3.11.0-2.14.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15033
    P
    libmysqlclient18-10.0.40.1-2.9.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13840
    P
    grub2-2.02~beta2-104.16 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:100646
    P
    (Important)
    2021-08-16
    oval:org.opensuse.security:def:47403
    P
    libquicktime0-1.2.4-10.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48143
    P
    liblouis-data-2.6.4-6.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14122
    P
    dosfstools-3.0.26-6.5 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14060
    P
    xdg-utils-20140630-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47624
    P
    gnome-settings-daemon-3.20.1-50.5.8 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13967
    P
    libtiff5-32bit-4.0.6-26.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47937
    P
    DirectFB-1.7.1-6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14722
    P
    pam_krb5-2.4.4-4.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47590
    P
    davfs2-1.5.2-2.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14056
    P
    wget-1.14-10.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47481
    P
    python-imaging-1.1.7-21.15 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14049
    P
    unixODBC-2.3.4-6.5 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47549
    P
    ant-1.9.4-3.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13876
    P
    libXp6-1.0.2-3.57 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14328
    P
    mutt-1.6.0-54.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48200
    P
    libssh2-1-1.4.3-20.9.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14026
    P
    rpm-32bit-4.11.2-15.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47627
    P
    gnutls-3.3.27-3.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14370
    P
    res-signingkeys-3.0.25-48.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47591
    P
    dbus-1-1.8.22-29.10.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14189
    P
    libQt5WebKit5-5.6.2-1.31 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47949
    P
    apache2-2.4.23-29.43.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48291
    P
    qemu-3.1.1.1-1.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15035
    P
    libneon27-0.30.0-3.64 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47074
    P
    libsndfile1-1.0.25-25.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14171
    P
    iputils-s20121221-2.17 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47817
    P
    libyaml-0-2-0.1.6-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13992
    P
    openvpn-2.3.8-16.6.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48008
    P
    fontconfig-2.11.1-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14124
    P
    dracut-044-113.10 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47695
    P
    libass5-0.10.2-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14062
    P
    xf86-video-intel-2.99.917.641_ge4ef6e9-12.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47075
    P
    libsnmp30-32bit-5.7.3-4.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47670
    P
    libX11-6-1.6.2-12.5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13969
    P
    libupsclient1-2.7.1-4.55 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48231
    P
    libykcs11-1-1.5.0-3.16 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15055
    P
    libpolkit0-0.113-5.18.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47775
    P
    libqt4-32bit-4.8.7-8.8.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14381
    P
    socat-1.7.2.4-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14698
    P
    libykcs11-1-1.5.0-3.16 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47605
    P
    evince-3.20.2-6.22.9 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14208
    P
    libXxf86vm1-1.1.3-3.53 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48041
    P
    hardlink-1.0-6.38 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14372
    P
    rpm-32bit-4.11.2-15.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13791
    P
    cpp48-4.8.5-30.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14191
    P
    libXRes1-1.0.7-3.53 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:46916
    P
    cups-filters-1.0.58-13.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47995
    P
    dpdk-18.11.2-1.59 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47488
    P
    quagga-0.99.22.1-15.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14173
    P
    jakarta-taglibs-standard-1.1.1-255.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47779
    P
    libruby2_1-2_1-2.1.9-18.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47089
    P
    libupsclient1-2.7.1-4.55 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47863
    P
    python-PyYAML-3.12-26.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13994
    P
    opie-2.4-724.56 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48302
    P
    sane-backends-1.0.24-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14032
    P
    shim-0.9-20.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47989
    P
    dbus-1-1.8.22-9.38 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14036
    P
    squidGuard-1.4-23.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14395
    P
    tftp-5.2-10.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47489
    P
    radvd-1.9.7-2.12 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47726
    P
    libjavascriptcoregtk-4_0-18-2.20.3-2.23.8 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13855
    P
    java-1_8_0-ibm-1.8.0_sr3.0-10.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14301
    P
    libtirpc-netconfig-1.0.1-16.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47841
    P
    pam-modules-12.1-23.12 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:15057
    P
    libprocps3-3.3.9-11.18.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48189
    P
    libsaml8-2.5.5-3.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14383
    P
    squid-3.5.21-25.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14700
    P
    libzip2-0.11.1-13.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13838
    P
    gpgme-1.5.1-1.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14210
    P
    libapr1-1.5.1-2.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47109
    P
    opensc-0.13.0-1.107 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48087
    P
    libXv1-1.0.10-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13793
    P
    cron-4.2-58.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47210
    P
    augeas-1.2.0-15.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48051
    P
    java-1_7_0-openjdk-1.7.0.231-43.27.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14720
    P
    pam-1.1.8-24.14.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47534
    P
    xlockmore-5.43-5.30 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14054
    P
    vsftpd-3.0.2-31.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48073
    P
    libXcursor1-1.1.14-4.6.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14047
    P
    tftp-5.2-10.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:63372
    P
    salt-api-3002.2-6.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:2283
    P
    salt-api-3002.2-6.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:101398
    P
    salt-api-3002.2-6.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:62309
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:100956
    P
    libpng12-0-1.2.57-2.18 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:1013
    P
    ipsec-tools-0.8.2-5.35 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:101067
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:72050
    P
    python3-salt-3002.2-6.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:32132
    P
    Security update for libnettle (Important)
    2021-06-23
    oval:org.opensuse.security:def:32121
    P
    Security update for webkit2gtk3 (Important)
    2021-06-17
    oval:org.opensuse.security:def:66820
    P
    Security update for spice-gtk (Important)
    2021-06-09
    oval:org.opensuse.security:def:69864
    P
    Security update for qemu (Important)
    2021-06-09
    oval:org.opensuse.security:def:48762
    P
    NetworkManager-1.0.12-8.6 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48403
    P
    dnsmasq-2.71-10.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48691
    P
    libqt4-sql-mysql-32bit-4.8.6-2.6 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:71089
    P
    python2-salt-2018.3.0-3.9 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46780
    P
    libupsclient1-2.7.1-4.84 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48716
    P
    empathy-3.10.3-1.131 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13702
    P
    ppc64-diag-2.6.9-2.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48646
    P
    wireshark-1.12.13-31.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48700
    P
    libzmq3-4.0.4-2.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:61348
    P
    python2-salt-2018.3.0-3.9 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46781
    P
    libvdpau1-0.8-3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48487
    P
    libdcerpc-binding0-4.4.2-29.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48818
    P
    telepathy-idle-0.2.0-1.62 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48449
    P
    java-1_7_0-openjdk-1.7.0.111-33.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48549
    P
    libsnmp30-5.7.3-4.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48747
    P
    libtag1-32bit-1.9.1-1.265 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13724
    P
    socat-1.7.2.4-1.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46795
    P
    mozilla-nspr-32bit-4.10.10-9.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13694
    P
    perl-Cyrus-IMAP-2.3.18-35.71 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13704
    P
    procmail-3.22-267.12 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48940
    P
    libplist++3-1.12-20.3.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48533
    P
    libpcsclite1-1.8.10-3.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48614
    P
    res-signingkeys-3.0.18-26.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:71040
    P
    libvmtools-devel-10.2.5-1.27 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48505
    P
    libimobiledevice6-1.2.0-7.31 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48595
    P
    perl-Config-IniFiles-2.82-3.12 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13726
    P
    squid-3.3.13-4.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13696
    P
    perl-LWP-Protocol-https-6.04-5.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48645
    P
    wget-1.14-10.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48589
    P
    pam-modules-12.1-23.6 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48660
    P
    zoo-2.10-1020.56 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48651
    P
    xinetd-2.3.15-7.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:64696
    P
    Security update for postgresql13 (Moderate)
    2021-05-27
    oval:org.opensuse.security:def:67991
    P
    Security update for the Linux Kernel (Live Patch 15 for SLE 15 SP1) (Important)
    2021-05-25
    oval:org.opensuse.security:def:29357
    P
    Security update for samba (Important)
    2021-04-29
    oval:org.opensuse.security:def:73603
    P
    Security update for giflib (Low)
    2021-04-28
    oval:org.opensuse.security:def:29346
    P
    Security update for xorg-x11-server (Important)
    2021-04-14
    oval:org.opensuse.security:def:32282
    P
    Security update for wavpack (Important)
    2021-03-24
    oval:org.opensuse.security:def:32271
    P
    Security update for git (Important)
    2021-03-09
    oval:org.opensuse.security:def:38449
    P
    Security update for salt (Critical)
    2021-02-26
    oval:org.opensuse.security:def:64657
    P
    Security update for glibc (Important)
    2021-02-26
    oval:org.opensuse.security:def:68091
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP1) (Important)
    2021-02-10
    oval:org.opensuse.security:def:64453
    P
    Security update for python3 (Important)
    2020-12-23
    oval:org.opensuse.security:def:29310
    P
    Security update for xen (Moderate)
    2020-12-22
    oval:org.opensuse.security:def:93933
    P
    python3-salt-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107312
    P
    python3-salt-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63180
    P
    salt-api-2018.3.0-3.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107622
    P
    salt-api-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:48994
    P
    gstreamer-0_10-plugins-good-0.10.31-16.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2212
    P
    salt-api-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116870
    P
    python3-salt-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71444
    P
    axis-1.4-11.65 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:71707
    P
    python3-salt-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61966
    P
    python3-salt-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:117180
    P
    salt-api-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63301
    P
    salt-api-3000-2.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2091
    P
    salt-api-2018.3.0-3.9 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:31902
    P
    Security update for MozillaFirefox, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:66521
    P
    librrd8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66613
    P
    python3-salt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49875
    P
    python2-numpy-gnu-hpc on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49929
    P
    python2-salt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28094
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:33362
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33401
    P
    Security update for Salt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31903
    P
    Security update for fontconfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:37797
    P
    glib2-lang on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28573
    P
    Security update for libgcrypt
    2020-12-01
    oval:org.opensuse.security:def:32680
    P
    gtk2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27975
    P
    Security update for LibVNCServer (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32358
    P
    Security update for squidGuard (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38400
    P
    libwsman1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37715
    P
    yast2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28535
    P
    Security update for Samba
    2020-12-01
    oval:org.opensuse.security:def:32669
    P
    g3utils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38562
    P
    coolkey on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:64366
    P
    libpcre2-16-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27899
    P
    Security update for wireshark (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38343
    P
    libpango-1_0-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28612
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:28235
    P
    Security update for libvirt (Important)
    2020-12-01
    oval:org.opensuse.security:def:29321
    P
    Security update for sap_suse_cluster_connector
    2020-12-01
    oval:org.opensuse.security:def:31912
    P
    Security update for gcc43 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28178
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31914
    P
    Security update for gd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37933
    P
    libopus0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32724
    P
    libpng12-0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49922
    P
    python2-numpy on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49976
    P
    salt-api on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28105
    P
    Security update for glibc (Important)
    2020-12-01
    oval:org.opensuse.security:def:32514
    P
    ft2demos on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33373
    P
    Security update for compat-openssl097g
    2020-12-01
    oval:org.opensuse.security:def:33412
    P
    Security update for Salt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31913
    P
    Security update for gcc5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37799
    P
    gnome-keyring on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28584
    P
    Security update for libvirt
    2020-12-01
    oval:org.opensuse.security:def:32691
    P
    kdelibs4 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32369
    P
    Security update for tar (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38402
    P
    libxerces-c-3_1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28628
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:73186
    P
    libnetpbm11 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28319
    P
    Security update for openwsman (Important)
    2020-12-01
    oval:org.opensuse.security:def:38488
    P
    strongswan on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38091
    P
    vsftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28623
    P
    Security update for zypper
    2020-12-01
    oval:org.opensuse.security:def:28246
    P
    Security update for libxml2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38451
    P
    ppc64-diag on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27890
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:31988
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:38034
    P
    powerpc-utils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37701
    P
    w3m on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28189
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32570
    P
    libtiff3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:67700
    P
    libneon-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31924
    P
    Security update for ghostscript-library (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37935
    P
    libotr5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32735
    P
    libtiff3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49978
    P
    skopeo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50032
    P
    salt-api on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27901
    P
    Security update for xalan-j2
    2020-12-01
    oval:org.opensuse.security:def:32525
    P
    gstreamer-0_10-plugins-base on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28672
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:39240
    P
    Security update for Salt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37702
    P
    wget on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28471
    P
    Security update for xorg-x11-libs (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32619
    P
    xpdf-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38516
    P
    xalan-j2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38181
    P
    fetchmail on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28639
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:73485
    P
    blktrace on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:70163
    P
    Security update for xorg-x11-server (Important)
    2020-12-01
    oval:org.opensuse.security:def:28330
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38490
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38093
    P
    wget on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49264
    P
    libxml2-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49318
    P
    python3-salt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27900
    P
    Security update for wireshark (Low)
    2020-12-01
    oval:org.opensuse.security:def:31998
    P
    Security update for jpeg (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38036
    P
    ppp on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73304
    P
    python3-salt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37703
    P
    wpa_supplicant on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27965
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32581
    P
    mutt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:67943
    P
    libyaml-cpp0_6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37713
    P
    xorg-x11-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28524
    P
    Security update for sblim-sfcb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32658
    P
    evolution-data-server on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38560
    P
    clamav on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50043
    P
    yast2-rmt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50097
    P
    salt-api on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:27889
    P
    Security update for rxvt-unicode
    2020-12-01
    oval:org.opensuse.security:def:27911
    P
    Security update for Xen
    2020-12-01
    oval:org.opensuse.security:def:38341
    P
    libospf0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28683
    P
    Security update for flash-player (Critical)
    2020-12-01
    oval:org.opensuse.security:def:39200
    P
    libosip2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37704
    P
    xalan-j2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28482
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32630
    P
    acpid on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38518
    P
    xen on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:38183
    P
    flatpak on GA media (Moderate)
    2020-12-01
    oval:com.ubuntu.bionic:def:2017146950000000
    V
    CVE-2017-14695 on Ubuntu 18.04 LTS (bionic) - medium.
    2017-10-24
    oval:com.ubuntu.artful:def:201714695000
    V
    CVE-2017-14695 on Ubuntu 17.10 (artful) - medium.
    2017-10-24
    oval:com.ubuntu.xenial:def:201714695000
    V
    CVE-2017-14695 on Ubuntu 16.04 LTS (xenial) - medium.
    2017-10-24
    oval:com.ubuntu.xenial:def:2017146950000000
    V
    CVE-2017-14695 on Ubuntu 16.04 LTS (xenial) - medium.
    2017-10-24
    oval:com.ubuntu.bionic:def:201714695000
    V
    CVE-2017-14695 on Ubuntu 18.04 LTS (bionic) - medium.
    2017-10-24
    oval:com.ubuntu.disco:def:2017146950000000
    V
    CVE-2017-14695 on Ubuntu 19.04 (disco) - medium.
    2017-10-24
    oval:com.ubuntu.cosmic:def:201714695000
    V
    CVE-2017-14695 on Ubuntu 18.10 (cosmic) - medium.
    2017-10-24
    oval:com.ubuntu.cosmic:def:2017146950000000
    V
    CVE-2017-14695 on Ubuntu 18.10 (cosmic) - medium.
    2017-10-24
    oval:com.ubuntu.trusty:def:201714695000
    V
    CVE-2017-14695 on Ubuntu 14.04 LTS (trusty) - medium.
    2017-10-24
    BACK
    saltstack salt *
    saltstack salt 2016.11
    saltstack salt 2016.11.0
    saltstack salt 2016.11.1
    saltstack salt 2016.11.1 rc1
    saltstack salt 2016.11.1 rc2
    saltstack salt 2016.11.2
    saltstack salt 2016.11.3
    saltstack salt 2016.11.4
    saltstack salt 2016.11.5
    saltstack salt 2016.11.6
    saltstack salt 2016.11.7
    saltstack salt 2017.7.0
    saltstack salt 2017.7.0 rc1
    saltstack salt 2017.7.1
    saltstack salt 2016.3.7
    saltstack salt 2016.11.7
    saltstack salt 2017.7.1