Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

openSUSE Leap 42.1 Security Update: 2016:2028-1 Important Hawk2 Fixes

opensuse
Calendar Grey August 11, 2016
Dist Opensuse Esm H88
Essential security patch for hawk2 on openSUSE, tackling Clickjacking vulnerabilities and various bug corrections. Update via zypper command.
An update that contains security fixes can now be installed

Description

This update for hawk2 fixes one security issue and one bug.

The following security change is included:

- To prevent Clickjacking attacks, set Content-Security-Policy to

frame-ancestors 'self' (bsc#984619)

The following non-security issue was fixed:

- In the Wizards UI, prevent text display issues due to

internationalization with certain strings (bsc#987696)

This update was imported from the SUSE:SLE-12-SP1:Update update project.

Patch

Patch Instructions:

To install this openSUSE Security Update use YaST online_update.

Alternatively you can run the command listed for your product:

- openSUSE Leap 42.1:

zypper in -t patch openSUSE-2016-971=1

To bring your system up-to-date, use "zypper patch".

Package List

- openSUSE Leap 42.1 (i586 x86_64):

hawk2-1.0.1+git.1456406635.49e230d-5.1

hawk2-debuginfo-1.0.1+git.1456406635.49e230d-5.1

hawk2-debugsource-1.0.1+git.1456406635.49e230d-5.1

References

https://bugzilla.suse.com/984619

https://bugzilla.suse.com/987696

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2016:2028-1
Rating: important
Affected Products: openSUSE Leap 42.1 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here