Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 501
Alerts This Week
Warning Icon 1 501

SUSE Linux 12-SP5: Moderate Advisory 2021:3611-1 for Systemd

suse
Calendar Grey November 4, 2021
Scroller Suse
This Ubuntu security bulletin highlights a patch for OpenSSH, correcting a low-severity vulnerability with a single resolution.
An update that solves one vulnerability, contains one feature and has 6 fixes is now available

Summary

This update for systemd fixes the following issues: - machine-id-setup: generate machine-id from DMI product ID on Amazon EC2 - Add timestamp to D-Bus events to improve traceability. (jsc#SLE-21894) - busctl: add a timestamp to the output of the busctl monitor command (bsc#1180225, jsc#SLE-21894) - sysctl: configure kernel parameters in the order they occur in each sysctl configuration files (bsc#1191399) - basic/unit-name: do not use strdupa() on a path (bsc#1188063, CVE-2021-33910) - logind: terminate cleanly on SIGTERM/SIGINT (bsc#1188018) - units: make fsck/grows/makefs/makeswap units conflict against shutdown.target - Make sure the versions of both udev and systemd packages are always the same (bsc#1189480) - Avoid the error message when udev is updated due to udev being already

References

#1171962 #1180225 #1188018 #1188063 #1188291

#1189480 #1191399 SLE-21894

Cross- CVE-2021-33910

CVSS scores:

CVE-2021-33910 (NVD) : 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CVE-2021-33910 (SUSE): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products:

SUSE Linux Enterprise Software Development Kit 12-SP5

SUSE Linux Enterprise Server 12-SP5

https://www.suse.com/security/cve/CVE-2021-33910.html

https://bugzilla.suse.com/1171962

https://bugzilla.suse.com/1180225

https://bugzilla.suse.com/1188018

https://bugzilla.suse.com/1188063

https://bugzilla.suse.com/1188291

https://bugzilla.suse.com/1189480

https://bugzilla.suse.com/1191399

Announcement ID: SUSE-SU-2021:3611-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.