Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

SUSE: 2020:14563-1 Moderate Security Update for Client Tools

suse
Calendar Grey December 14, 2020
Scroller Suse
This release addresses a vulnerability in SUSE Manager Agent Utilities, includes a relevant erratum, and offers guidance on applying the patches.
An update that solves one vulnerability and has one errata is now available

Summary

This update fixes the following issues: salt: - Fix syntax error on pkgrepo state with Python 2.7 - Transactional_update: unify with chroot.call - Add "migrated" state and GPG key management functions - Master can read grains - Fix for broken psutil (bsc#1102248) - Fix novendorchange handling in zypperpkg module - Avoid regression on "salt-master": set passphrase for salt-ssh keys to empty string (bsc#1178485) spacecmd: - Fix: make spacecmd build on Debian Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Manager Ubuntu 18.04-CLIENT-TOOLS: zypper in -t patch suse-ubu184ct-client-tools-202011-14563=1 Package List:

References

#1102248 #1178485

Cross- CVE-2020-25592

Affected Products:

SUSE Manager Ubuntu 18.04-CLIENT-TOOLS

https://www.suse.com/security/cve/CVE-2020-25592.html

https://bugzilla.suse.com/1102248

https://bugzilla.suse.com/1178485

Announcement ID: SUSE-SU-2020:14563-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.