Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

SUSE: 2020:2373-1 Moderate: SUSE Manager Server Vulnerability Fix

suse
Calendar Grey August 28, 2020
Dist Suse Esm H88
SUSE Security Patches for Manager Server 4.1 address a single vulnerability, while also providing various updates aimed at improving overall system stability.
An update that solves one vulnerability and has 36 fixes is now available

Summary

This update fixes the following issues: cobbler: - More old modules naming fixes (bsc#1169553) image-sync-formula: - Allow image-sync state on regular minion. Image sync state requires branch-network pillars to get the directory where to sync images. Use default `/srv/saltboot` if that pillar is missing so image-sync can be applied on non branch minions as well. mgr-libmod: - Remove unnecessary array wrap in 'list_modules' response object mgr-osad: - Move uyuni-base-common dependency from mgr-osad to mgr-osa-dispatcher (bsc#1174405) openvpn-formula: - Add hint that ssl certs must be on system (bsc#1172279) patterns-suse-manager: - Add Recommends for golang-github-QubitProducts-exporter_exporter prometheus-exporters-formula:

References

#1136857 #1165572 #1169553 #1169780 #1170244

#1170468 #1170654 #1171281 #1172279 #1172504

#1172709 #1172807 #1172831 #1172839 #1173169

#1173522 #1173535 #1173554 #1173566 #1173584

#1173932 #1173982 #1173997 #1174025 #1174167

#1174201 #1174229 #1174325 #1174405 #1174470

#1174965 #1175485 #1175555 #1175558 #1175724

#1175791 #678126

Cross- CVE-2020-11022

Affected Products:

SUSE Linux Enterprise Module for SUSE Manager Server 4.1

SUSE Linux Enterprise Module for SUSE Manager Proxy 4.1

https://www.suse.com/security/cve/CVE-2020-11022.html

https://bugzilla.suse.com/1136857

https://bugzilla.suse.com/1165572

https://bugzilla.suse.com/1169553

https://bugzilla.suse.com/1169780

https://bugzilla.suse.com/1170244

https://bugzilla.suse.com/1170468

Announcement ID: SUSE-SU-2020:2373-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here