Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

SUSE Linux Enterprise Micro: 2024:1557-3 Moderate: RPM Security Issues

suse
Calendar Grey July 31, 2024
Dist Suse Esm H88
SUSE security advisory releases updates for RPM focusing on addressing moderate vulnerabilities and delivering essential patches for Linux Enterprise Server.
* bsc#1189495 * bsc#1191175 * bsc#1218686 Cross-References:

Summary

## This update for rpm fixes the following issues: Security fixes: \- CVE-2021-3521: Fixed missing subkey binding signature checking (bsc#1191175) Other fixes: * accept more signature subpackets marked as critical (bsc#1218686) * backport limit support for the autopatch macro (bsc#1189495) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2024-1557=1 ## Package List: * SUSE Linux Enterprise Micro 5.5 (aarch64 ppc64le s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1

References

* bsc#1189495

* bsc#1191175

* bsc#1218686

Cross-

* CVE-2021-3521

CVSS scores:

* CVE-2021-3521 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N

* CVE-2021-3521 ( NVD ): 4.7 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N

Affected Products:

* SUSE Linux Enterprise Micro 5.5

An update that solves one vulnerability and has two security fixes can now be

installed.

##

* https://www.suse.com/security/cve/CVE-2021-3521.html

* https://bugzilla.suse.com/show_bug.cgi?id=1189495

* https://bugzilla.suse.com/show_bug.cgi?id=1191175

* https://bugzilla.suse.com/show_bug.cgi?id=1218686

Announcement ID: SUSE-SU-2024:1557-3
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here