Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

SUSE: 2020:1972-1 Moderate: SUSE Manager Tools Security Update

suse
Calendar Grey July 21, 2020
Dist Suse Esm H88
New version of SUSE Manager Client Tools has been launched, addressing vulnerabilities and introducing numerous enhancements.
An update that solves four vulnerabilities and has 13 fixes is now available

Summary

This update fixes the following issues: dracut-saltboot: - Print a list of available disk devices (bsc#1170824) - Install wipefs to initrd - Force install crypt modules golang-github-prometheus-prometheus: - Update change log and spec file + Modified spec file: default to golang 1.14 to avoid "have choice" build issues in OBS. + Rebase and update patches for version 2.18.0 - Update to 2.18.0 + Features * Tracing: Added experimental Jaeger support #7148 + Changes * Federation: Only use local TSDB for federation (ignore remote read). #7096 * Rules: `rule_evaluations_total` and `rule_evaluation_failures_total` have a `rule_group` label now. #7094 + Enhancements * TSDB: Significantly reduce WAL size kept around after a block cut. #7098 * Discovery: Add `architecture` meta label for EC2. #7000 + Bug fixes

References

#1113160 #1138822 #1142038 #1148177 #1153090

#1153277 #1154940 #1154968 #1155372 #1163871

#1165921 #1168310 #1170231 #1170557 #1170824

#1171687 #1172462

Cross- CVE-2019-10215 CVE-2019-15043 CVE-2020-12245

CVE-2020-13379

Affected Products:

SUSE Manager Tools 15

https://www.suse.com/security/cve/CVE-2019-10215.html

https://www.suse.com/security/cve/CVE-2019-15043.html

https://www.suse.com/security/cve/CVE-2020-12245.html

https://www.suse.com/security/cve/CVE-2020-13379.html

https://bugzilla.suse.com/1113160

https://bugzilla.suse.com/1138822

https://bugzilla.suse.com/1142038

https://bugzilla.suse.com/1148177

https://bugzilla.suse.com/1153090

https://bugzilla.suse.com/1153277

https://bugzilla.suse.com/1154940

Announcement ID: SUSE-SU-2020:1972-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here