Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

SUSE: 2019:14163-1 Moderate: Session Validity Issue Fixed

suse
Calendar Grey September 5, 2019
Dist Suse Esm H88
SUSE Security Update addresses a vulnerability affecting SUSE Manager Client Tools. Discover more about the specifics and implications.
An update that solves one vulnerability and has 19 fixes is now available

Summary

This update fixes the following issues: mgr-cfg: - Ensure bytes type when using hashlib to avoid traceback (bsc#1138822) mgr-daemon: - Fix systemd timer configuration on SLE12 (bsc#1142038) mgr-osad: - Fix obsolete for old osad packages, to allow installing mgr-osad even by using osad at yum/zyppper install (bsc#1139453) - Ensure bytes type when using hashlib to avoid traceback (bsc#1138822) mgr-virtualization: - Fix missing python 3 ugettext (bsc#1138494) - Fix package dependencies to prevent file conflict (bsc#1143856) rhnlib: - Add SNI support for clients - Fix initialize ssl connection (bsc#1144155) - Fix bootstrapping SLE11SP4 trad client with SSL enabled (bsc#1148177) python-gzipstream: - SPEC cleanup - add makefile and pylint configuration - Add Uyuni URL to package

References

#1103696 #1104034 #1130040 #1135881 #1136029

#1136480 #1137715 #1137940 #1138313 #1138358

#1138494 #1138822 #1139453 #1142038 #1143856

#1144155 #1144889 #1148125 #1148177 #1148311

Cross- CVE-2019-10136

Affected Products:

SUSE Linux Enterprise Server 11-SP4-CLIENT-TOOLS

SUSE Linux Enterprise Server 11-SP3-CLIENT-TOOLS

https://www.suse.com/security/cve/CVE-2019-10136.html

https://bugzilla.suse.com/1103696

https://bugzilla.suse.com/1104034

https://bugzilla.suse.com/1130040

https://bugzilla.suse.com/1135881

https://bugzilla.suse.com/1136029

https://bugzilla.suse.com/1136480

https://bugzilla.suse.com/1137715

https://bugzilla.suse.com/1137940

https://bugzilla.suse.com/1138313

https://bugzilla.suse.com/1138358

Announcement ID: SUSE-SU-2019:14163-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here