SUSE Security Update: Security update for SUSE Manager Server 4.2
______________________________________________________________________________

Announcement ID:    SUSE-SU-2022:4442-1
Rating:             moderate
References:         #1205339 
Affected Products:
                    SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2
                    SUSE Linux Enterprise Module for SUSE Manager Server 4.2
                    SUSE Manager Proxy 4.2
                    SUSE Manager Server 4.2
______________________________________________________________________________

   An update that contains security fixes can now be installed.

Description:

   This update fixes the following issues:

   spacewalk-java:

     - Version 4.2.44-1
       * Do not disclose Proxy password in browser console log. (bsc#1205339)

   spacewalk-web:

     - Version 4.2.31-1
       * Do not log Proxy password in browser console log. (bsc#1205339)

   susemanager-sync-data:

     - Version 4.2.14-1
       * Add SUSE Linux Enterprise Server 15 SP3 LTSS

   How to apply this update:

   1. Log in as root user to the SUSE Manager server. 2. Stop the Spacewalk
   service: `spacewalk-service stop` 3. Apply the patch using either zypper
   patch or YaST Online Update. 4. Start the Spacewalk service:
   `spacewalk-service start`


Patch Instructions:

   To install this SUSE Security Update use the SUSE recommended installation methods
   like YaST online_update or "zypper patch".

   Alternatively you can run the command listed for your product:

   - SUSE Linux Enterprise Module for SUSE Manager Server 4.2:

      zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Server-4.2-2022-4442=1

   - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2:

      zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Proxy-4.2-2022-4442=1



Package List:

   - SUSE Linux Enterprise Module for SUSE Manager Server 4.2 (noarch):

      spacewalk-base-4.2.31-150300.3.33.2
      spacewalk-base-minimal-4.2.31-150300.3.33.2
      spacewalk-base-minimal-config-4.2.31-150300.3.33.2
      spacewalk-html-4.2.31-150300.3.33.2
      spacewalk-java-4.2.44-150300.3.51.3
      spacewalk-java-config-4.2.44-150300.3.51.3
      spacewalk-java-lib-4.2.44-150300.3.51.3
      spacewalk-java-postgresql-4.2.44-150300.3.51.3
      spacewalk-taskomatic-4.2.44-150300.3.51.3
      susemanager-sync-data-4.2.14-150300.3.24.1

   - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2 (noarch):

      spacewalk-base-minimal-4.2.31-150300.3.33.2
      spacewalk-base-minimal-config-4.2.31-150300.3.33.2


References:

   https://bugzilla.suse.com/1205339

SUSE: 2022:4442-1 moderate: SUSE Manager Server 4.2

December 13, 2022
An update that contains security fixes can now be installed

Summary

This update fixes the following issues: spacewalk-java: - Version 4.2.44-1 * Do not disclose Proxy password in browser console log. (bsc#1205339) spacewalk-web: - Version 4.2.31-1 * Do not log Proxy password in browser console log. (bsc#1205339) susemanager-sync-data: - Version 4.2.14-1 * Add SUSE Linux Enterprise Server 15 SP3 LTSS How to apply this update: 1. Log in as root user to the SUSE Manager server. 2. Stop the Spacewalk service: `spacewalk-service stop` 3. Apply the patch using either zypper patch or YaST Online Update. 4. Start the Spacewalk service: `spacewalk-service start` Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for SUSE Manager Server 4.2: zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Server-4.2-2022-4442=1 - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2: zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Proxy-4.2-2022-4442=1 Package List: - SUSE Linux Enterprise Module for SUSE Manager Server 4.2 (noarch): spacewalk-base-4.2.31-150300.3.33.2 spacewalk-base-minimal-4.2.31-150300.3.33.2 spacewalk-base-minimal-config-4.2.31-150300.3.33.2 spacewalk-html-4.2.31-150300.3.33.2 spacewalk-java-4.2.44-150300.3.51.3 spacewalk-java-config-4.2.44-150300.3.51.3 spacewalk-java-lib-4.2.44-150300.3.51.3 spacewalk-java-postgresql-4.2.44-150300.3.51.3 spacewalk-taskomatic-4.2.44-150300.3.51.3 susemanager-sync-data-4.2.14-150300.3.24.1 - SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2 (noarch): spacewalk-base-minimal-4.2.31-150300.3.33.2 spacewalk-base-minimal-config-4.2.31-150300.3.33.2

References

#1205339

Affected Products:

SUSE Linux Enterprise Module for SUSE Manager Proxy 4.2

SUSE Linux Enterprise Module for SUSE Manager Server 4.2

SUSE Manager Proxy 4.2

SUSE Manager Server 4.2

https://bugzilla.suse.com/1205339

Severity
Announcement ID: SUSE-SU-2022:4442-1
Rating: moderate

Related News