Alerts This Week
Warning Icon 1 1,229
Alerts This Week
Warning Icon 1 1,229

SUSE Manager Tools 5.0.1-1: Moderate Fixes and New Features

suse
Calendar Grey January 23, 2024
Dist Suse Esm H88
The SUSE Manager Client Utilities and Salt continue to be updated with vital security patches and enhancements. Additional information is provided below.

Summary

## This update fixes the following issues: ansible: * Update to version 2.9.27 (jsc#SLE-23631) (jsc#SLE-24133) * bsc#1187725 CVE-2021-3620 ansible-connection module discloses sensitive info in traceback error message (in 2.9.27) * bsc#1188061 CVE-2021-3583 Template Injection through yaml multi-line strings with ansible facts used in template. (in 2.9.23) * bsc#1176460 gh#ansible/ansible#72094 ansible module nmcli is broken in ansible 2.9.13 (in 2.9.15) * Update to 2.9.22: * CVE-2021-3447 (bsc#1183684) multiple modules expose secured values * CVE-2021-20228 (bsc#1181935) basic.py no_log with fallback option * CVE-2021-20191 (bsc#1181119) multiple collections exposes secured values * CVE-2021-20180 (bsc#1180942) bitbucket_pipeline_variable exposes sensitive values

References

* bsc#1172110

* bsc#1176460

* bsc#1180816

* bsc#1180942

* bsc#1181119

* bsc#1181935

* bsc#1183684

* bsc#1187725

* bsc#1188061

* bsc#1188571

* bsc#1189520

* bsc#1191454

* bsc#1192154

* bsc#1192383

* bsc#1192696

* bsc#1192763

* bsc#1193492

* bsc#1193686

* bsc#1193688

* bsc#1197507

* bsc#1198903

* bsc#1199810

* bsc#1200142

* bsc#1200480

* bsc#1200591

* bsc#1200968

* bsc#1200970

* bsc#1201003

* bsc#1201059

* bsc#1201535

* bsc#1201539

* bsc#1202614

* bsc#1202945

* bsc#1203283

* bsc#1203596

* bsc#1203597

* bsc#1203599

* bsc#1204032

* bsc#1204126

* bsc#1204302

* bsc#1204303

* bsc#1204304

* bsc#1204305

* bsc#1204501

* bsc#1205207

* bsc#1205225

* bsc#1205227

* bsc#1205599

* bsc#1205759

* bsc#1207352

* bsc#1207749

* bsc#1207750

* bsc#1207830

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2024:0196-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here