Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

SUSE: 2019:3394-1 Moderate: Python-Azure-Agent Data Leak Fix

suse
Calendar Grey December 30, 2019
Dist Suse Esm H88
SUSE Security Bulletin outlines a resolution for python-azure-agent tackling a data exposure vulnerability and additional concerns. Continue reading for detailed information.
An update that solves one vulnerability and has one errata is now available

Summary

This update for python-azure-agent fixes the following issues: Update to version 2.2.45 (jsc#ECO-80) + Add support for Gen2 VM resource disks + Use alternate systemd detection + Fix /proc/net/route requirement that causes errors on FreeBSD + Add cloud-init auto-detect to prevent multiple provisioning mechanisms from relying on configuration for coordination + Disable cgroups when daemon is setup incorrectly + Remove upgrade extension loop for the same goal state + Add container id for extension telemetry events + Be more exact when detecting IMDS service health + Changing add_event to start sending missing fields Update to version 2.2.44: + Remove outdated extension ZIP packages + Improved error handling when starting extensions using systemd + Reduce provisioning time of some custom images

References

#1127838 #1159639

Cross- CVE-2019-0804

Affected Products:

SUSE Linux Enterprise Module for Public Cloud 12

https://www.suse.com/security/cve/CVE-2019-0804.html

https://bugzilla.suse.com/1127838

https://bugzilla.suse.com/1159639

Announcement ID: SUSE-SU-2019:3394-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here