This update for pcp fixes the following issues:
Security issue fixed:
- CVE-2019-3695: Fixed a local privilege escalation of the pcp user during
package update (bsc#1152763).
Non-security issue fixed:
- Fixed an dependency issue with pcp2csv (bsc#1129991).
This update was imported from the SUSE:SLE-15-SP1:Update update project.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.1:
zypper in -t patch openSUSE-2020-213=1
- openSUSE Leap 15.1 (i586 x86_64):
libpcp-devel-4.3.1-lp151.2.3.1
libpcp3-4.3.1-lp151.2.3.1
libpcp3-debuginfo-4.3.1-lp151.2.3.1
libpcp_gui2-4.3.1-lp151.2.3.1
libpcp_gui2-debuginfo-4.3.1-lp151.2.3.1
libpcp_import1-4.3.1-lp151.2.3.1
libpcp_import1-debuginfo-4.3.1-lp151.2.3.1
libpcp_mmv1-4.3.1-lp151.2.3.1
libpcp_mmv1-debuginfo-4.3.1-lp151.2.3.1
libpcp_trace2-4.3.1-lp151.2.3.1
libpcp_trace2-debuginfo-4.3.1-lp151.2.3.1
libpcp_web1-4.3.1-lp151.2.3.1
libpcp_web1-debuginfo-4.3.1-lp151.2.3.1
pcp-4.3.1-lp151.2.3.1
pcp-conf-4.3.1-lp151.2.3.1
pcp-debuginfo-4.3.1-lp151.2.3.1
pcp-debugsource-4.3.1-lp151.2.3.1
pcp-devel-4.3.1-lp151.2.3.1
pcp-devel-debuginfo-4.3.1-lp151.2.3.1
pcp-export-pcp2elasticsearch-4.3.1-lp151.2.3.1
pcp-export-pcp2graphite-4.3.1-lp151.2.3.1
pcp-export-pcp2influxdb-4.3.1-lp151.2.3.1
pcp-export-pcp2json-4.3.1-lp151.2.3.1
pcp-export-pcp2spark-4.3.1-lp151.2.3.1
pcp-export-pcp2xml-4.3.1-lp151.2.3.1
pcp-export-pcp2zabbix-4.3.1-lp151.2.3.1
pcp-export-zabbix-agent-4.3.1-lp151.2.3.1
pcp-export-zabbix-agent-debugin...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2019-3695.html
https://www.suse.com/security/cve/CVE-2019-3696.html
https://bugzilla.suse.com/1129991
https://bugzilla.suse.com/1152763
https://bugzilla.suse.com/1153921
--
Get the latest Linux and open source security news straight to your inbox.