Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

SUSE: 2019:1973-1 Important: RMT-Server Update with Critical Fixes

suse
Calendar Grey July 25, 2019
Dist Suse Esm H88
Important SUSE patch released for rmt-server tackling vulnerabilities and improving performance.
An update that solves two vulnerabilities and has 10 fixes is now available

Summary

This update for rmt-server to version 2.3.1 fixes the following issues: - Fix mirroring logic when errors are encountered (bsc#1140492) - Refactor RMT::Mirror to download metadata/licenses in parallel - Check repo metadata GPG signatures during mirroring (bsc#1132690) - Add rmt-server-config subpackage with nginx configs (fate#327816, bsc#1136081) - Fix dependency to removed boot_cli_i18n file (bsc#1136020) - Add `rmt-cli systems list` command to list registered systems - Fix create UUID when system_uuid file empty (bsc#1138316) - Fix duplicate nginx location in rmt-server-pubcloud (bsc#1135222) - Mirror additional repos that were enabled during mirroring (bsc#1132690) - Make service IDs consistent across different RMT instances (bsc#1134428) - Make SMT data import scripts faster (bsc#1134190)

References

#1128858 #1129271 #1129392 #1132160 #1132690

#1134190 #1134428 #1135222 #1136020 #1136081

#1138316 #1140492

Cross- CVE-2019-11068 CVE-2019-5419

Affected Products:

SUSE Linux Enterprise Module for Server Applications 15-SP1

SUSE Linux Enterprise Module for Public Cloud 15-SP1

https://www.suse.com/security/cve/CVE-2019-11068.html

https://www.suse.com/security/cve/CVE-2019-5419.html

https://bugzilla.suse.com/1128858

https://bugzilla.suse.com/1129271

https://bugzilla.suse.com/1129392

https://bugzilla.suse.com/1132160

https://bugzilla.suse.com/1132690

https://bugzilla.suse.com/1134190

https://bugzilla.suse.com/1134428

https://bugzilla.suse.com/1135222

https://bugzilla.suse.com/1136020

https://bugzilla.suse.com/1136081

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2019:1973-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here