openSUSE: 2021:3815-1 important: netcdf
Description
This update for netcdf fixes the following issues: - Fixed multiple vulnerabilities in ezXML: CVE-2019-20007, CVE-2019-20006, CVE-2019-20201, CVE-2019-20202, CVE-2019-20199, CVE-2019-20200, CVE-2019-20198, CVE-2021-26221, CVE-2021-26222, CVE-2021-30485, CVE-2021-31229, CVE-2021-31347, CVE-2021-31348, CVE-2021-31598 (bsc#1191856) Note: * CVE-2021-26220 https://sourceforge.net/p/ezxml/bugs/23 not relevant for netcdf: code isn't used. * CVE-2019-20005 https://sourceforge.net/p/ezxml/bugs/14 Issue cannot be reproduced and no patch is available upstream.
Patch
Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2021-3815=1
Package List
- openSUSE Leap 15.3 (aarch64 ppc64le x86_64): libnetcdf-gnu-openmpi1-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-hpc-debuginfo-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-mpich-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-mpich-hpc-debuginfo-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-mvapich2-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-mvapich2-hpc-debuginfo-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-openmpi1-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-openmpi1-hpc-debuginfo-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-openmpi2-hpc-4.6.1-10.7.2 libnetcdf_4_6_1-gnu-openmpi2-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-devel-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-devel-data-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-devel-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-hpc-devel-static-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-debugsource-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-devel-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-devel-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-mpich-hpc-devel-static-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-debugsource-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-devel-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-devel-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-mvapich2-hpc-devel-static-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi1-hpc-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi1-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi1-hpc-devel-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi1-hpc-devel-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi1-hpc-devel-static-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi2-hpc-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi2-hpc-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi2-hpc-devel-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi2-hpc-devel-debuginfo-4.6.1-10.7.2 netcdf_4_6_1-gnu-openmpi2-hpc-devel-static-4.6.1-10.7.2 - openSUSE Leap 15.3 (noarch): netcdf-gnu-openmpi1-hpc-4.6.1-10.7.2 netcdf-gnu-openmpi1-hpc-devel-4.6.1-10.7.2
References
https://www.suse.com/security/cve/CVE-2019-20005.html https://www.suse.com/security/cve/CVE-2019-20006.html https://www.suse.com/security/cve/CVE-2019-20007.html https://www.suse.com/security/cve/CVE-2019-20198.html https://www.suse.com/security/cve/CVE-2019-20199.html https://www.suse.com/security/cve/CVE-2019-20200.html https://www.suse.com/security/cve/CVE-2019-20201.html https://www.suse.com/security/cve/CVE-2019-20202.html https://www.suse.com/security/cve/CVE-2021-26220.html https://www.suse.com/security/cve/CVE-2021-26221.html https://www.suse.com/security/cve/CVE-2021-26222.html https://www.suse.com/security/cve/CVE-2021-30485.html https://www.suse.com/security/cve/CVE-2021-31229.html https://www.suse.com/security/cve/CVE-2021-31347.html https://www.suse.com/security/cve/CVE-2021-31348.html https://www.suse.com/security/cve/CVE-2021-31598.html https://bugzilla.suse.com/1191856