Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

openSUSE Leap 15.3: 2021:2435-1 Critical: Crmsh Vulnerability Patch

opensuse
Calendar Grey July 21, 2021
Dist Opensuse Esm H88
Critical security updates for openSUSE users improve crmsh protection against vulnerabilities. Update immediately to ensure system integrity and safety
An update that solves one vulnerability, contains one feature and has 5 fixes is now available

Description

This update for crmsh fixes the following issues:

Update to version 4.3.1+20210624.67223df2:

- Fix: ocfs2: Skip verifying UUID for ocfs2 device on top of raid or lvm

on the join node (bsc#1187553)

- Fix: history: use Path.mkdir instead of mkdir command(bsc#1179999,

CVE-2020-35459)

- Dev: crash_test: Add big warnings to have users' attention to potential

failover(jsc#SLE-17979)

- Dev: crash_test: rename preflight_check as crash_test(jsc#SLE-17979)

- Fix: bootstrap: update sbd watchdog timeout when using diskless SBD with

qdevice(bsc#1184465)

- Dev: utils: allow configure link-local ipv6 address(bsc#1163460)

- Fix: parse: shouldn't allow property setting with an empty

value(bsc#1185423)

- Fix: help: show help message from argparse(bsc#1175982)

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.3:

zypper in -t patch openSUSE-SLE-15.3-2021-2435=1

Package List

- openSUSE Leap 15.3 (noarch):

crmsh-4.3.1+20210702.4e0ee8fb-5.59.1

crmsh-scripts-4.3.1+20210702.4e0ee8fb-5.59.1

crmsh-test-4.3.1+20210702.4e0ee8fb-5.59.1

References

https://www.suse.com/security/cve/CVE-2020-35459.html

https://bugzilla.suse.com/1163460

https://bugzilla.suse.com/1175982

https://bugzilla.suse.com/1179999

https://bugzilla.suse.com/1184465

https://bugzilla.suse.com/1185423

https://bugzilla.suse.com/1187553

Announcement ID: openSUSE-SU-2021:2435-1
Rating: moderate
Affected Products: openSUSE Leap 15.3 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here