Alerts This Week
Warning Icon 1 1,146
Alerts This Week
Warning Icon 1 1,146

SUSE: 2020:2832-1 Moderate: CVE-2019-14900 On SUSE Manager Server 4.1

suse
Calendar Grey October 2, 2020
Dist Suse Esm H88
A patch for SUSE Manager Server 4.1 that resolves a security issue and implements 25 improvements has been released.
An update that solves one vulnerability and has 25 fixes is now available

Summary

This update fixes the following issues: golang-github-QubitProducts-exporter_exporter: - Pin Golang version to 1.14 golang-github-prometheus-node_exporter: - Update to 1.0.1 * Changes to build specification + Modify spec: update golang version to 1.14 + Remove update tarball script + Add _service file to allow for updates via `osc service disabledrun` * Bug fixes + [BUGFIX] filesystem_freebsd: Fix label values #1728 + [BUGFIX] Update prometheus/procfs to fix log noise #1735 + [BUGFIX] Fix build tags for collectors #1745 + [BUGFIX] Handle no data from powersupplyclass #1747, #1749 - Update to 1.0.0 * Bug fixes + [BUGFIX] Read /proc/net files with a single read syscall #1380 + [BUGFIX] Renamed label state to name on node_systemd_service_restart_total. #1393 + [BUGFIX] Fix netdev nil reference on Darwin #1414

References

#1151557 #1165287 #1165829 #1171836 #1172079

#1172263 #1173073 #1173520 #1173603 #1173621

#1174025 #1174254 #1174357 #1174423 #1174636

#1175103 #1175512 #1175529 #1175545 #1175556

#1175889 #1176500 #1176503 #1176844 #1176862

#1176913

Cross- CVE-2019-14900

Affected Products:

SUSE Linux Enterprise Module for SUSE Manager Server 4.1

https://www.suse.com/security/cve/CVE-2019-14900.html

https://bugzilla.suse.com/1151557

https://bugzilla.suse.com/1165287

https://bugzilla.suse.com/1165829

https://bugzilla.suse.com/1171836

https://bugzilla.suse.com/1172079

https://bugzilla.suse.com/1172263

https://bugzilla.suse.com/1173073

https://bugzilla.suse.com/1173520

https://bugzilla.suse.com/1173603

https://bugzilla.suse.com/1173621

Announcement ID: SUSE-SU-2020:2832-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here