Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE: 2020:1179-1 Moderate: rmt-server Denial of Service Fix

suse
Calendar Grey May 5, 2020
Dist Suse Esm H88
SUSE Security Patch for rmt-client tackling vulnerabilities and corrections with medium impact. Now accessible.
An update that solves one vulnerability and has four fixes is now available

Summary

This update for rmt-server to version 2.5.7 fixes the following issues: Security issues fixed: - CVE-2019-18904: Fixed offline migrations (bsc#1160922). - Fixed a local denial of service (bsc#1165548). Non-security issues fixed: - Align supported subscription types with SCC (bsc#1168554). - Fix migrations in case adding migration_extra column failed (bsc#1162296). - Fix dependency to removed boot_cli_i18n file (bsc#1136020) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2020-1179=1 - SUSE Linux Enterprise Server 15-LTSS:

References

#1136020 #1160922 #1162296 #1165548 #1168554

Cross- CVE-2019-18904

Affected Products:

SUSE Linux Enterprise Server for SAP 15

SUSE Linux Enterprise Server 15-LTSS

SUSE Linux Enterprise High Performance Computing 15-LTSS

SUSE Linux Enterprise High Performance Computing 15-ESPOS

https://www.suse.com/security/cve/CVE-2019-18904.html

https://bugzilla.suse.com/1136020

https://bugzilla.suse.com/1160922

https://bugzilla.suse.com/1162296

https://bugzilla.suse.com/1165548

https://bugzilla.suse.com/1168554

Announcement ID: SUSE-SU-2020:1179-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here