Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

openSUSE: 2024:0350-1 important: govulncheck Advisory Security Update

opensuse
Calendar Grey November 5, 2024
Scroller Opensuse
The latest openSUSE govulncheck-vulndb update addresses 56 critical vulnerabilities. Key security improvements are integrated.
An update that fixes 56 vulnerabilities, contains one feature is now available

Description

This update for govulncheck-vulndb fixes the following issues:

- Update to version 0.0.20241104T154416 2024-11-04T15:44:16Z. Refs

jsc#PED-11136 Go CVE Numbering Authority IDs added or updated with

aliases:

* GO-2024-3233 CVE-2024-46872 GHSA-762g-9p7f-mrww

* GO-2024-3234 CVE-2024-47401 GHSA-762v-rq7q-ff97

* GO-2024-3235 CVE-2024-50052 GHSA-g376-m3h3-mj4r

* GO-2024-3237 CVE-2024-0133 GHSA-f748-7hpg-88ch

* GO-2024-3239 CVE-2024-0132 GHSA-mjjw-553x-87pq

* GO-2024-3240 CVE-2024-10452 GHSA-66c4-2g2v-54qw

* GO-2024-3241 CVE-2024-10006 GHSA-5c4w-8hhh-3c3h

* GO-2024-3242 CVE-2024-10086 GHSA-99wr-c2px-grmh

* GO-2024-3243 CVE-2024-10005 GHSA-chgm-7r52-whjj

- Update to version 0.0.20241101T215616 2024-11-01T21:56:16Z. Refs

jsc#PED-11136 Go CVE Numbering Authority IDs added or updated with

aliases:

* GO-2024-3244 CVE-2024-50354 GHSA-cph5-3pgr-c82g

* GO-2024-3245 CVE-2024-39720

* GO-2024-3246 CVE-2024-8185...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- SUSE Package Hub for SUSE Linux Enterprise 12:

zypper in -t patch openSUSE-2024-350=1

Package List

- SUSE Package Hub for SUSE Linux Enterprise 12 (noarch):

govulncheck-vulndb-0.0.20241104T154416-5.1

References

https://www.suse.com/security/cve/CVE-2022-45157.html

https://www.suse.com/security/cve/CVE-2023-22644.html

https://www.suse.com/security/cve/CVE-2023-32197.html

https://www.suse.com/security/cve/CVE-2024-0132.html

https://www.suse.com/security/cve/CVE-2024-0133.html

https://www.suse.com/security/cve/CVE-2024-10005.html

https://www.suse.com/security/cve/CVE-2024-10006.html

https://www.suse.com/security/cve/CVE-2024-10086.html

https://www.suse.com/security/cve/CVE-2024-10214.html

https://www.suse.com/security/cve/CVE-2024-10241.html

https://www.suse.com/security/cve/CVE-2024-10452.html

https://www.suse.com/security/cve/CVE-2024-22030.html

https://www.suse.com/security/cve/CVE-2024-22036.html

https://www.suse.com/security/cve/CVE-2024-33662.html

https://www.suse.com/security/cve/CVE-2024-36814.html

https://www.suse.com/security/cve/CVE-2024-38365.html

https://www.suse.com/security/cve/CVE-2024-39223.html

https://www.suse.com/security/cve/CVE-2024-39720.html

https://www.suse.com/security/cve/CVE-2024-46872...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2024:0350-1
Rating: important
Affected Products: SUSE Linux Enterprise High Performance Computing 12 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Server 12-SP3 SUSE Linux Enterprise Server 12-SP4 SUSE Linux Enterprise Server 12-SP5 SUSE Linux Enterprise Server for SAP Applications 12 SUSE Linux Enterprise Server for SAP Applications 12-SP3 SUSE Linux Enterprise Server for SAP Applications 12-SP4 SUSE Linux Enterprise Server for SAP Applications 12-SP5 SUSE Package Hub for SUSE Linux Enterprise 12 ble.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.