SUSE: 202311:15242-1 important: SUSE Manager Client Tools
Summary
## This update fixes the following issues: salt: * Security fixes: * CVE-2023-34049: Arbitrary code execution via symlink attack (bsc#1215157) * Non security fixes: * Allow all primitive grain types for autosign_grains (bsc#1214477) spacecmd: * Version 4.3.25-1 * Update translation strings
References
* bsc#1214477
* bsc#1215157
* jsc#MSQA-708
Cross-
* CVE-2023-34049
CVSS scores:
* CVE-2023-34049 ( SUSE ): 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products:
* SUSE Manager Client Tools for Ubuntu 20.04 2004
An update that solves one vulnerability, contains one feature and has one
security fix can now be installed.
##
* https://www.suse.com/security/cve/CVE-2023-34049.html
* https://bugzilla.suse.com/show_bug.cgi?id=1214477
* https://bugzilla.suse.com/show_bug.cgi?id=1215157
* https://jira.suse.com/login.jsp