Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

openSUSE: 2024:0384-1 moderate: zabbix advisory for multiple issues

opensuse
Calendar Grey December 1, 2024
Dist Opensuse Esm H88
openSUSE announces a significant security patch for zabbix. Addresses multiple vulnerabilities alongside introducing enhancements.
An update that fixes two vulnerabilities is now available

Description

This update for zabbix fixes the following issues:

Zabbix was updated to 6.0.33:

- this version fixes CVE-2024-36461 and CVE-2024-22114

- New Features and Improvements

+ ZBXNEXT-9000 Changed query table for ASM disk group metrics in Oracle

Database plugin and Oracle by ODBC template Agent Templates

+ ZBXNEXT-9217 Added AWS Lambda by HTTP template Templates

+ ZBXNEXT-9293 Updated max supported MySQL version to 9.0 Proxy Server

+ ZBXNEXT-8657 Updated Zabbix health templates with new visualization

Templates

+ ZBXNEXT-9143 Added index on auditlog recordsetid Server

+ ZBXNEXT-9081 Added Small Computer System Interface (SCSI) device type

support to Zabbix agent 2 Smart plugin Agent

+ ZBXNEXT-6445 Added recovery expression for fuzzytime triggers in Linux

and Windows templates, removed fuzzytime triggers from active agent

templates Templates

+ ZBXNEXT-9201 Updated max supported MySQL version to 8.4...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP6:

zypper in -t patch openSUSE-2024-384=1

Package List

- openSUSE Backports SLE-15-SP6 (aarch64 i586 ppc64le s390x x86_64):

zabbix-agent-6.0.33-bp156.2.3.1

zabbix-proxy-6.0.33-bp156.2.3.1

zabbix-proxy-mysql-6.0.33-bp156.2.3.1

zabbix-proxy-postgresql-6.0.33-bp156.2.3.1

zabbix-proxy-sqlite-6.0.33-bp156.2.3.1

zabbix-server-6.0.33-bp156.2.3.1

zabbix-server-mysql-6.0.33-bp156.2.3.1

zabbix-server-postgresql-6.0.33-bp156.2.3.1

- openSUSE Backports SLE-15-SP6 (noarch):

system-user-zabbix-6.0.33-bp156.2.3.1

zabbix-java-gateway-6.0.33-bp156.2.3.1

zabbix-ui-6.0.33-bp156.2.3.1

References

https://www.suse.com/security/cve/CVE-2024-22114.html

https://www.suse.com/security/cve/CVE-2024-36461.html

https://bugzilla.suse.com/1229198

https://bugzilla.suse.com/1229204

Announcement ID: openSUSE-SU-2024:0384-1
Rating: moderate
Affected Products: openSUSE Backports SLE-15-SP6 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here