Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -2 articles for you...
100

SUSE 15 SP5: 2025:0181-1 moderate: Kernel Live Patch 17 Issues

* bsc#1225429 * bsc#1229553 * bsc#1232637 * bsc#1233712 . # Security update for the Linux Kernel (Live Patch 17 for SLE 15 SP5) Announcement ID: SUSE-SU-2025:0181-1 Release Date: 2025-01-17T20:03:47Z Rating: important References: * bsc#1225429 * bsc#1229553 * bsc#1232637 * bsc#1233712 Cross-References: * CVE-2021-47517 * CVE-2022-48956 * CVE-2024-43861 * CVE-2024-50264 CVSS scores: * CVE-2021-47517 ( SUSE ): 6.5 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2022-48956 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2022-48956 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-43861 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-43861 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2024-50264 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50264 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-50264 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise Live Patching 15-SP5 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves four vulnerabilities can now be installed. ## Description: This update for the Linux Kernel 5.14.21-150500_55_73 fixes several issues. The following security issues were fixed: * CVE-2024-50264: vsock/virtio: Initialization of the dangling pointer occurring in vsk-> trans (bsc#1233712). * CVE-2022-48956: ipv6: avoid use-after-free in ip6_fragment() (bsc#1232637). * CVE-2021-47517: Fix panic when interrupt coaleceing is set via ethtool (bsc#1225429). * CVE-2024-43861: Fix memory leak for not ip packets (bsc#1229553). ## Patch Instructions: To install this SUSE update use the SUSE recommended installationmethods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch SUSE-2025-181=1 * SUSE Linux Enterprise Live Patching 15-SP5 zypper in -t patch SUSE-SLE-Module-Live-Patching-15-SP5-2025-181=1 ## Package List: * openSUSE Leap 15.5 (ppc64le s390x x86_64) * kernel-livepatch-SLE15-SP5_Update_17-debugsource-3-150500.11.6.1 * kernel-livepatch-5_14_21-150500_55_73-default-debuginfo-3-150500.11.6.1 * kernel-livepatch-5_14_21-150500_55_73-default-3-150500.11.6.1 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le s390x x86_64) * kernel-livepatch-5_14_21-150500_55_73-default-debuginfo-3-150500.11.6.1 * kernel-livepatch-5_14_21-150500_55_73-default-3-150500.11.6.1 * SUSE Linux Enterprise Live Patching 15-SP5 (ppc64le x86_64) * kernel-livepatch-SLE15-SP5_Update_17-debugsource-3-150500.11.6.1 ## References: * https://www.suse.com/security/cve/CVE-2021-47517.html * https://www.suse.com/security/cve/CVE-2022-48956.html * https://www.suse.com/security/cve/CVE-2024-43861.html * https://www.suse.com/security/cve/CVE-2024-50264.html * https://bugzilla.suse.com/show_bug.cgi?id=1225429 * https://bugzilla.suse.com/show_bug.cgi?id=1229553 * https://bugzilla.suse.com/show_bug.cgi?id=1232637 * https://bugzilla.suse.com/show_bug.cgi?id=1233712 . Important release for the Linux Kernel tackling numerous concerns. Discover the solutions and installation procedures today!. Linux Kernel Security Update, SUSE Live Patch, Kernel Fixes, Kernel Issues. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Jan 20, 2025 Important SuSE
100

SUSE: 2024:1557-1 Moderate RPM Security Update for Affected Products

* bsc#1189495 * bsc#1191175 * bsc#1218686 Cross-References: . # Security update for rpm Announcement ID: SUSE-SU-2024:1557-1 Rating: moderate References: * bsc#1189495 * bsc#1191175 * bsc#1218686 Cross-References: * CVE-2021-3521 CVSS scores: * CVE-2021-3521 ( SUSE ): 4.4 CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N * CVE-2021-3521 ( NVD ): 4.7 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N Affected Products: * Basesystem Module 15-SP5 * Development Tools Module 15-SP5 * openSUSE Leap 15.4 * openSUSE Leap 15.5 * openSUSE Leap Micro 5.4 * Public Cloud Module 15-SP4 * Public Cloud Module 15-SP5 * Python 3 Module 15-SP5 * SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Micro 5.4 * SUSE Linux Enterprise Micro 5.5 * SUSE Linux Enterprise Micro for Rancher 5.4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Manager Proxy 4.3 * SUSE Manager Proxy 4.3 Module 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 * SUSE Manager Server 4.3 Module 4.3 An update that solves one vulnerability and has two security fixes can now be installed. ## Description: This update for rpm fixes the following issues: Security fixes: \- CVE-2021-3521: Fixed missing subkey binding signature checking (bsc#1191175) Other fixes: * accept more signature subpackets marked as critical (bsc#1218686) * backport limit support for the autopatch macro (bsc#1189495) ## PatchInstructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2024-1557=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2024-1557=1 * SUSE Manager Proxy 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.3-2024-1557=1 * SUSE Manager Retail Branch Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch- Server-4.3-2024-1557=1 * SUSE Manager Server 4.3 zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.3-2024-1557=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2024-1557=1 * openSUSE Leap Micro 5.4 zypper in -t patch openSUSE-Leap-Micro-5.4-2024-1557=1 * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2024-1557=1 * SUSE Linux Enterprise Micro for Rancher 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2024-1557=1 * SUSE Linux Enterprise Micro 5.4 zypper in -t patch SUSE-SLE-Micro-5.4-2024-1557=1 * SUSE Linux Enterprise Micro 5.5 zypper in -t patch SUSE-SLE-Micro-5.5-2024-1557=1 * Basesystem Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP5-2024-1557=1 * Development Tools Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2024-1557=1 * Public Cloud Module 15-SP4 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP4-2024-1557=1 * Public Cloud Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP5-2024-1557=1 * Python 3 Module 15-SP5 zypper in -t patch SUSE-SLE-Module-Python3-15-SP5-2024-1557=1 * SUSE Manager Proxy 4.3 Module 4.3 zypper in -t patch SUSE-SLE-Module-SUSE-Manager-Proxy-4.3-2024-1557=1 * SUSE Manager Server 4.3 Module 4.3 zypper in -t patchSUSE-SLE-Module-SUSE-Manager-Server-4.3-2024-1557=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2024-1557=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2024-1557=1 * SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 zypper in -t patch SUSE-SLE-Product-SLED-15-SP4-LTSS-2024-1557=1 ## Package List: * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 (aarch64 ppc64le s390x x86_64) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Server 15 SP4 LTSS 15-SP4 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * SUSE Manager Proxy 4.3 (x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-32bit-4.14.3-150400.59.16.1 *rpm-devel-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Manager Retail Branch Server 4.3 (x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-32bit-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Manager Server 4.3 (ppc64le s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Manager Server 4.3 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-imaevmsign-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * rpm-imaevmsign-debuginfo-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap 15.4 (x86_64) * rpm-ndb-32bit-debuginfo-4.14.3-150400.59.16.1 *rpm-32bit-4.14.3-150400.59.16.1 * rpm-ndb-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap 15.4 (aarch64_ilp32) * rpm-64bit-4.14.3-150400.59.16.1 * rpm-64bit-debuginfo-4.14.3-150400.59.16.1 * rpm-ndb-64bit-4.14.3-150400.59.16.1 * rpm-ndb-64bit-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap Micro 5.4 (aarch64 s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * openSUSE Leap 15.5 (x86_64) * rpm-ndb-32bit-debuginfo-4.14.3-150400.59.16.1 * rpm-32bit-4.14.3-150400.59.16.1 * rpm-ndb-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Micro for Rancher 5.4 (aarch64 s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 *python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Micro 5.4 (aarch64 s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Micro 5.5 (aarch64 s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * Basesystem Module 15-SP5 (aarch64 ppc64le s390x x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * Basesystem Module 15-SP5 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * Development Tools Module 15-SP5 (aarch64 ppc64le s390x x86_64) * rpm-build-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * Public Cloud Module 15-SP4 (aarch64 ppc64le s390x x86_64) * rpm-ndb-debugsource-4.14.3-150400.59.16.1 * rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * Public Cloud Module 15-SP5 (aarch64 ppc64le s390x x86_64) * rpm-ndb-debugsource-4.14.3-150400.59.16.1 *rpm-ndb-debuginfo-4.14.3-150400.59.16.1 * rpm-ndb-4.14.3-150400.59.16.1 * Python 3 Module 15-SP5 (aarch64 ppc64le s390x x86_64) * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * SUSE Manager Proxy 4.3 Module 4.3 (aarch64 ppc64le s390x x86_64) * rpm-build-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Manager Server 4.3 Module 4.3 (aarch64 ppc64le s390x x86_64) * rpm-build-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * rpm-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise High PerformanceComputing LTSS 15 SP4 (x86_64) * rpm-32bit-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * SUSE Linux Enterprise Desktop 15 SP4 LTSS 15-SP4 (x86_64) * rpm-4.14.3-150400.59.16.1 * rpm-debuginfo-4.14.3-150400.59.16.1 * python311-rpm-debuginfo-4.14.3-150400.59.16.1 * rpm-build-4.14.3-150400.59.16.1 * rpm-32bit-4.14.3-150400.59.16.1 * python311-rpm-4.14.3-150400.59.16.1 * rpm-devel-4.14.3-150400.59.16.1 * rpm-build-debuginfo-4.14.3-150400.59.16.1 * rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-4.14.3-150400.59.16.1 * rpm-32bit-debuginfo-4.14.3-150400.59.16.1 * python-rpm-debugsource-4.14.3-150400.59.16.1 * python3-rpm-debuginfo-4.14.3-150400.59.16.1 ## References: * https://www.suse.com/security/cve/CVE-2021-3521.html * https://bugzilla.suse.com/show_bug.cgi?id=1189495 * https://bugzilla.suse.com/show_bug.cgi?id=1191175 * https://bugzilla.suse.com/show_bug.cgi?id=1218686 . New release for SUSE packages addresses security vulnerability classified as moderate; affects several products and various installation approaches.. SUSE Linux Security,RPM Update,Vulnerability Management,Package Patching. . LinuxSecurity.com Team

Calendar 2 May 08, 2024 SuSE
100

SUSE: 2022:4079-1 Moderate: Java-17-OpenJDK Security Issue

An update that solves 5 vulnerabilities and has one errata is now available. . SUSE Security Update: Security update for java-17-openjdk ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:4079-1 Rating: moderate References: #1203476 #1204468 #1204472 #1204473 #1204475 #1204480 Cross-References: CVE-2022-21618 CVE-2022-21619 CVE-2022-21624 CVE-2022-21628 CVE-2022-39399 CVSS scores: CVE-2022-21618 (NVD) : 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21618 (SUSE): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21619 (NVD) : 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21619 (SUSE): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21624 (NVD) : 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21624 (SUSE): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-21628 (NVD) : 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVE-2022-21628 (SUSE): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVE-2022-39399 (NVD) : 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N CVE-2022-39399 (SUSE): 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap15.4 ______________________________________________________________________________ An update that solves 5 vulnerabilities and has one errata is now available. Description: This update for java-17-openjdk fixes the following issues: - Update to jdk-17.0.5+8 (October 2022 CPU) - CVE-2022-39399: Improve HTTP/2 client usage(bsc#1204480) - CVE-2022-21628: Better HttpServer service (bsc#1204472) - CVE-2022-21624: Enhance icon presentations (bsc#1204475) - CVE-2022-21619: Improve NTLM support (bsc#1204473) - CVE-2022-21618: Wider MultiByte (bsc#1204468) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2022-4079=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2022-4079=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): java-17-openjdk-17.0.5.0-150400.3.6.1 java-17-openjdk-accessibility-17.0.5.0-150400.3.6.1 java-17-openjdk-accessibility-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-debugsource-17.0.5.0-150400.3.6.1 java-17-openjdk-demo-17.0.5.0-150400.3.6.1 java-17-openjdk-devel-17.0.5.0-150400.3.6.1 java-17-openjdk-devel-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-headless-17.0.5.0-150400.3.6.1 java-17-openjdk-headless-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-jmods-17.0.5.0-150400.3.6.1 java-17-openjdk-src-17.0.5.0-150400.3.6.1 - openSUSE Leap 15.4 (noarch): java-17-openjdk-javadoc-17.0.5.0-150400.3.6.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 ppc64le s390x x86_64): java-17-openjdk-17.0.5.0-150400.3.6.1 java-17-openjdk-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-debugsource-17.0.5.0-150400.3.6.1 java-17-openjdk-demo-17.0.5.0-150400.3.6.1 java-17-openjdk-devel-17.0.5.0-150400.3.6.1 java-17-openjdk-devel-debuginfo-17.0.5.0-150400.3.6.1 java-17-openjdk-headless-17.0.5.0-150400.3.6.1 java-17-openjdk-headless-debuginfo-17.0.5.0-150400.3.6.1 References: https://www.suse.com/security/cve/CVE-2022-21618.html https://www.suse.com/security/cve/CVE-2022-21619.html https://www.suse.com/security/cve/CVE-2022-21624.html https://www.suse.com/security/cve/CVE-2022-21628.html https://www.suse.com/security/cve/CVE-2022-39399.html https://bugzilla.suse.com/1203476 https://bugzilla.suse.com/1204468 https://bugzilla.suse.com/1204472 https://bugzilla.suse.com/1204473 https://bugzilla.suse.com/1204475 https://bugzilla.suse.com/1204480 . New version released for java-17-openjdk addressing five vulnerabilities. Security level categorized as moderate, featuring numerous enhancements and resolutions.. SUSE Java Update, Java 17 OpenJDK, Security Advisory, SUSE Linux Enterprise. . LinuxSecurity.com Team

Calendar 2 Nov 18, 2022 SuSE
100

SUSE: 2020:3597-1 Critical: Python Directory Traversal Risk

An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for python ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:3597-1 Rating: important References: #1176262 Cross-References: CVE-2019-20916 Affected Products: SUSE Linux Enterprise Server for SAP 15 SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise Module for Python2 15-SP3 SUSE Linux Enterprise Module for Python2 15-SP2 SUSE Linux Enterprise Module for Python2 15-SP1 SUSE Linux Enterprise Module for Desktop Applications 15-SP3 SUSE Linux Enterprise Module for Desktop Applications 15-SP2 SUSE Linux Enterprise Module for Desktop Applications 15-SP1 SUSE Linux Enterprise Module for Basesystem 15-SP3 SUSE Linux Enterprise Module for Basesystem 15-SP2 SUSE Linux Enterprise Module for Basesystem 15-SP1 SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-ESPOS ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for python fixes the following issues: - Fixed a directory traversal in _download_http_url() (bsc#1176262 CVE-2019-20916) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2020-3597=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2020-3597=1 - SUSE LinuxEnterprise Module for Python2 15-SP3: zypper in -t patch SUSE-SLE-Module-Python2-15-SP3-2020-3597=1 - SUSE Linux Enterprise Module for Python2 15-SP2: zypper in -t patch SUSE-SLE-Module-Python2-15-SP2-2020-3597=1 - SUSE Linux Enterprise Module for Python2 15-SP1: zypper in -t patch SUSE-SLE-Module-Python2-15-SP1-2020-3597=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP3: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP3-2020-3597=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP2-2020-3597=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP1-2020-3597=1 - SUSE Linux Enterprise Module for Basesystem 15-SP3: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP3-2020-3597=1 - SUSE Linux Enterprise Module for Basesystem 15-SP2: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP2-2020-3597=1 - SUSE Linux Enterprise Module for Basesystem 15-SP1: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP1-2020-3597=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-2020-3597=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2020-3597=1 Package List: - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Python2 15-SP3 (aarch64 ppc64le s390x x86_64): python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Python2 15-SP2 (aarch64 ppc64le s390x x86_64): python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Python2 15-SP1 (aarch64 ppc64le s390x x86_64): python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP3 (aarch64 ppc64le s390x x86_64): python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-tk-2.7.17-7.47.1 python-tk-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le s390x x86_64): python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-tk-2.7.17-7.47.1 python-tk-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP1 (aarch64 ppc64le s390x x86_64): python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-tk-2.7.17-7.47.1 python-tk-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Basesystem 15-SP3 (aarch64 ppc64le s390x x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Basesystem 15-SP2 (aarch64 ppc64le s390x x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 - SUSE Linux Enterprise Module for Basesystem 15-SP1 (aarch64 ppc64le s390x x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): libpython2_7-1_0-2.7.17-7.47.1 libpython2_7-1_0-debuginfo-2.7.17-7.47.1 python-2.7.17-7.47.1 python-base-2.7.17-7.47.1 python-base-debuginfo-2.7.17-7.47.1 python-base-debugsource-2.7.17-7.47.1 python-curses-2.7.17-7.47.1 python-curses-debuginfo-2.7.17-7.47.1 python-debuginfo-2.7.17-7.47.1 python-debugsource-2.7.17-7.47.1 python-devel-2.7.17-7.47.1 python-gdbm-2.7.17-7.47.1 python-gdbm-debuginfo-2.7.17-7.47.1 python-xml-2.7.17-7.47.1 python-xml-debuginfo-2.7.17-7.47.1 References: https://www.suse.com/security/cve/CVE-2019-20916.html https://bugzilla.suse.com/1176262 . SUSE has released an important security patch for Python that addresses a directory traversal flaw. Please apply it without delay.. SUSE Python Update, Security Patch, Critical Issues, Directory Traversal Fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 02, 2020 Important SuSE
202

openSUSE Leap 15.2: openSUSE-SU-2020:1093-1 Moderate: perl-YAML-LibYAML Fix

An update that contains security fixes can now be installed.. openSUSE Security Update: Security update for perl-YAML-LibYAML ______________________________________________________________________________ Announcement ID: openSUSE-SU-2020:1093-1 Rating: moderate References: #1173703 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for perl-YAML-LibYAML fixes the following issues: perl-YAML-LibYAML was updated to 0.69: [bsc#1173703] * Security fix: Add $LoadBlessed option to turn on/off loading objects: Default is set to true. Note that, the behavior is unchanged. * Clarify documentation about exported functions * Dump() was modifying original data, adding a PV to numbers * Support standard tags !!str, !!map and !!seq instead of dying. * Support JSON::PP::Boolean and boolean.pm via $YAML::XS::Boolean. * Fix regex roundtrip. Fix loading of many regexes. This update was imported from the SUSE:SLE-15:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2020-1093=1 Package List: - openSUSE Leap 15.2 (i586 x86_64): perl-YAML-LibYAML-0.69-lp152.4.3.1 perl-YAML-LibYAML-debuginfo-0.69-lp152.4.3.1 perl-YAML-LibYAML-debugsource-0.69-lp152.4.3.1 References: https://bugzilla.suse.com/1173703 -- . Critical patch release for perl-YAML-LibYAML in openSUSE: Alert ID openSUSE-SU-2021:210.. openSUSE Security Update, perl-YAML-LibYAML Fix, moderate Security Advisory. . LinuxSecurity.com Team

Calendar 2 Jul 27, 2020 OpenSUSE
100

SUSE: 2020:1857-1 Moderate: Permissions Security Update

An update that contains security fixes can now be installed. . SUSE Security Update: Security update for permissions ______________________________________________________________________________ Announcement ID: SUSE-SU-2020:1857-1 Rating: moderate References: #1171883 Affected Products: SUSE Linux Enterprise Server 12-SP4 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for permissions fixes the following issues: - Removed conflicting entries which might expose pcp to security issues (bsc#1171883) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 12-SP4: zypper in -t patch SUSE-SLE-SERVER-12-SP4-2020-1857=1 Package List: - SUSE Linux Enterprise Server 12-SP4 (aarch64 ppc64le s390x x86_64): permissions-20170707-3.24.1 permissions-debuginfo-20170707-3.24.1 permissions-debugsource-20170707-3.24.1 References: https://bugzilla.suse.com/1171883 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Patch for access control addresses vulnerabilities and offers essential deployment procedures.. SUSE Linux Enterprise, Security Update, Permissions Fixes. . LinuxSecurity.com Team

Calendar 2 Jul 06, 2020 SuSE
100

SUSE: 2019:2036-2 Important: java-1_8_0-openjdk Security Update

An update that solves 8 vulnerabilities and has one errata is now available. . SUSE Security Update: Security update for java-1_8_0-openjdk ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:2036-2 Rating: important References: #1115375 #1141780 #1141782 #1141783 #1141784 #1141785 #1141786 #1141787 #1141789 Cross-References: CVE-2019-2745 CVE-2019-2762 CVE-2019-2766 CVE-2019-2769 CVE-2019-2786 CVE-2019-2816 CVE-2019-2842 CVE-2019-7317 Affected Products: SUSE Enterprise Storage 5 ______________________________________________________________________________ An update that solves 8 vulnerabilities and has one errata is now available. Description: This update for java-1_8_0-openjdk to version 8u222 fixes the following issues: Security issues fixed: - CVE-2019-2745: Improved ECC Implementation (bsc#1141784). - CVE-2019-2762: Exceptional throw cases (bsc#1141782). - CVE-2019-2766: Improve file protocol handling (bsc#1141789). - CVE-2019-2769: Better copies of CopiesList (bsc#1141783). - CVE-2019-2786: More limited privilege usage (bsc#1141787). - CVE-2019-2816: Normalize normalization (bsc#1141785). - CVE-2019-2842: Extended AES support (bsc#1141786). - CVE-2019-7317: Improve PNG support (bsc#1141780). - Certificate validation improvements Non-security issue fixed: - Fixed an issue where the installation failed when the manpages are not present (bsc#1115375) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Enterprise Storage 5: zypper in -t patch SUSE-Storage-5-2019-2036=1 Package List: - SUSE Enterprise Storage 5 (aarch64): java-1_8_0-openjdk-1.8.0.222-27.35.2 java-1_8_0-openjdk-debuginfo-1.8.0.222-27.35.2 java-1_8_0-openjdk-debugsource-1.8.0.222-27.35.2 java-1_8_0-openjdk-demo-1.8.0.222-27.35.2 java-1_8_0-openjdk-demo-debuginfo-1.8.0.222-27.35.2 java-1_8_0-openjdk-devel-1.8.0.222-27.35.2 java-1_8_0-openjdk-devel-debuginfo-1.8.0.222-27.35.2 java-1_8_0-openjdk-headless-1.8.0.222-27.35.2 java-1_8_0-openjdk-headless-debuginfo-1.8.0.222-27.35.2 References: https://www.suse.com/security/cve/CVE-2019-2745.html https://www.suse.com/security/cve/CVE-2019-2762.html https://www.suse.com/security/cve/CVE-2019-2766.html https://www.suse.com/security/cve/CVE-2019-2769.html https://www.suse.com/security/cve/CVE-2019-2786.html https://www.suse.com/security/cve/CVE-2019-2816.html https://www.suse.com/security/cve/CVE-2019-2842.html https://www.suse.com/security/cve/CVE-2019-7317.html https://bugzilla.suse.com/1115375 https://bugzilla.suse.com/1141780 https://bugzilla.suse.com/1141782 https://bugzilla.suse.com/1141783 https://bugzilla.suse.com/1141784 https://bugzilla.suse.com/1141785 https://bugzilla.suse.com/1141786 https://bugzilla.suse.com/1141787 https://bugzilla.suse.com/1141789 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . Critical security patch for java-1_8_0-openjdk resolves various vulnerabilities affecting SUSE Enterprise Storage.. Java Update,SUSE Enterprise Storage,Security Advisory,Installation Methods. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 16, 2019 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here