Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 465
Alerts This Week
Warning Icon 1 465

SUSE: 2022:3761-1 Moderate: Multiple Issues Fixed in Release Notes

suse
Calendar Grey October 26, 2022
Scroller Suse
Security enhancement for release-notes-susemanager and proxy, resolving various vulnerabilities and improving overall system compatibility.
An update that solves 5 vulnerabilities and has 39 fixes is now available

Summary

This update for release-notes-susemanager, release-notes-susemanager-proxy fixes the following issues: Release notes for SUSE Manager: - Update to SUSE Manager 4.3.2 * Containerized proxy and RBS are now fully supported * HTTP API is now fully supported * Ubuntu 22.04 is now supported as a client * Cobbler has been upgraded to version 3.3.3 which also includes building ISOs with UEFI support * pip support has been added for the Salt Bundle * Prometheus exporter for Apache has been upgraded to 0.10.0 * CVEs fixed: CVE-2021-41411, CVE-2021-42740, CVE-2021-43138, CVE-2022-0860, CVE-2022-31129 * Bugs mentioned: bsc#1191857, bsc#1195624, bsc#1196729, bsc#1197027, bsc#1198168 bsc#1198903, bsc#1199726, bsc#1200480, bsc#1200573, bsc#1200629 bsc#1201210, bsc#1201220, bsc#1201260, bsc#1201626,

References

#1191857 #1195624 #1196729 #1197027 #1198168

#1198903 #1199726 #1200480 #1200573 #1200629

#1201210 #1201220 #1201260 #1201589 #1201626

#1201753 #1201788 #1201913 #1201918 #1202271

#1202272 #1202367 #1202455 #1202464 #1202602

#1202728 #1202729 #1202805 #1202899 #1203026

#1203049 #1203056 #1203169 #1203287 #1203288

#1203385 #1203406 #1203422 #1203449 #1203478

#1203484 #1203564 #1203585 #1203611

Cross- CVE-2021-41411 CVE-2021-42740 CVE-2021-43138

CVE-2022-0860 CVE-2022-31129

CVSS scores:

CVE-2021-41411 (NVD) : 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVE-2021-41411 (SUSE): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CVE-2021-42740 (NVD) : 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Announcement ID: SUSE-SU-2022:3761-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.