An update that fixes one vulnerability is now available.. openSUSE Security Update: Security update for cinnamon ______________________________________________________________________________ Announcement ID: openSUSE-SU-2018:2121-1 Rating: moderate References: #1083067 Cross-References: CVE-2018-13054 Affected Products: openSUSE Leap 15.0 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for cinnamon fixes the following issues: Security issue fixed: - CVE-2018-13054: Fix symlink attack vulnerability (boo#1083067). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.0: zypper in -t patch openSUSE-2018-768=1 Package List: - openSUSE Leap 15.0 (noarch): cinnamon-gschemas-branding-upstream-3.6.7-lp150.3.3.1 - openSUSE Leap 15.0 (x86_64): cinnamon-3.6.7-lp150.3.3.1 cinnamon-debuginfo-3.6.7-lp150.3.3.1 cinnamon-debugsource-3.6.7-lp150.3.3.1 cinnamon-gschemas-3.6.7-lp150.3.3.1 References: https://www.suse.com/security/cve/CVE-2018-13054.html https://bugzilla.suse.com/1083067 -- . Resolution for the symbolic link vulnerability in Cinnamon can be accessed via an update on openSUSE. For more information, refer to the advisory details.. openSUSE Security, Cinnamon Update, Symlink Attack Fix, Vulnerability Patch. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.