Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

SUSE: 2020:14430-1 Moderate: SUSE Manager Client Tools Security Update

suse
Calendar Grey July 21, 2020
Dist Suse Esm H88
A new release for SUSE Manager Client Tools mitigates three security vulnerabilities, with patches now accessible.
An update that solves three vulnerabilities and has 18 fixes is now available

Summary

This update fixes the following issues: salt: - Require python3-distro only for TW (bsc#1173072) - Various virt backports from 3000.2 - Avoid traceback on debug logging for swarm module (bsc#1172075) - Add publish_batch to ClearFuncs exposed methods - Update to salt version 3000 See release notes: https://docs.saltproject.io/en/latest/topics/releases/3000.html - Zypperpkg: filter patterns that start with dot (bsc#1171906) - Batch mode now also correctly provides return value (bsc#1168340) - Add docker.logout to docker execution module (bsc#1165572) - Testsuite fix - Add option to enable/disable force refresh for zypper - Python3.8 compatibility changes - Prevent sporious "salt-api" stuck processes when managing SSH minions because of logging deadlock (bsc#1159284)

References

#1153090 #1153277 #1154940 #1155372 #1157465

#1159284 #1162327 #1163871 #1165572 #1167437

#1168340 #1169604 #1169800 #1170104 #1170288

#1170595 #1171687 #1171906 #1172075 #1173072

#1174165

Cross- CVE-2019-18897 CVE-2020-11651 CVE-2020-11652

Affected Products:

SUSE Manager Ubuntu 18.04-CLIENT-TOOLS

https://www.suse.com/security/cve/CVE-2019-18897.html

https://www.suse.com/security/cve/CVE-2020-11651.html

https://www.suse.com/security/cve/CVE-2020-11652.html

https://bugzilla.suse.com/1153090

https://bugzilla.suse.com/1153277

https://bugzilla.suse.com/1154940

https://bugzilla.suse.com/1155372

https://bugzilla.suse.com/1157465

https://bugzilla.suse.com/1159284

https://bugzilla.suse.com/1162327

https://bugzilla.suse.com/1163871

Announcement ID: SUSE-SU-2020:14430-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here